CVE-2011-1048

Mihantools - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in product.php in MihanTools 1.33 allows remote attackers to execute arbitrary SQL commands via the id parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by WHITE_DEVIL · textwebappsphp
https://www.exploit-db.com/exploits/16143

References (4)

Core 4
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/16143
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/43195
Exploit vdb-entry x_refsource_osvdb
http://osvdb.org/70858
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/46287

Scores

EPSS 0.0024
EPSS Percentile 47.6%

Details

CWE
CWE-89
Status published
Products (1)
mihantools/mihantools 1.33
Published Feb 21, 2011
Tracked Since Feb 18, 2026