PoC Index

CVE-2008-6798

HIGH 7.5EPSS 1.0%

Multiple SQL injection vulnerabilities in login.php in Pre Projects Pre Real Estate Listings allow remote attackers to execute arbitrary SQL commands via (1) the us parameter (aka the Username field) or (2) the ps parameter (aka the Password field).

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
0.97% chance of exploitation in the next 30 days, 59th percentile
Published
2009-05-07
Updated
2024-08-07

ExploitDB entries (1)

References

Related