PoC Index

CVE-2007-3290

HIGH 9.3EPSS 3.1%

categoria.php in LiveCMS 3.4 and earlier allows remote attackers to obtain sensitive information via a ' (quote) character in the cid parameter, which reveals the path in a forced SQL error message.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
3.11% chance of exploitation in the next 30 days, 87th percentile
Published
2007-06-20
Updated
2024-08-07

ExploitDB entries (1)

References

Related