PoC Index

CVE-2008-3762

HIGH 7.5EPSS 1.2%

SQL injection vulnerability in onlinestatus_html.php in Turnkey PHP Live Helper 2.0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the dep parameter, related to lack of input sanitization in the get function in global.php.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
1.19% chance of exploitation in the next 30 days, 66th percentile
Published
2008-08-21
Updated
2024-08-07

ExploitDB entries (1)

References

Related