CVE-2014-9440

phpMyRecipes 1.2.2 - SQL Injection

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in browse.php in phpMyRecipes 1.2.2 allows remote attackers to execute arbitrary SQL commands via the category parameter.

Exploits (1)

exploitdb WORKING POC
by Manish Tanwar · textwebappsphp
https://www.exploit-db.com/exploits/35591

References (3)

Core 3
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/35591
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/99531

Scores

EPSS 0.0094
EPSS Percentile 76.4%

Details

CWE
CWE-89
Status published
Products (1)
phpmyrecipes_project/phpmyrecipes 1.2.2
Published Jan 02, 2015
Tracked Since Feb 18, 2026