Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2007-3250

SQL injection vulnerability in mod_banners.php in Elxis CMS before 2006.4 20070613 allows remote attackers to execute arbitrary SQL commands via the mb_tracker cookie. NOTE: the product was patched without updating the version number; later downloads of 2006.4 are not affected.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 73.7%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2007-3250
  • Elxis » Elxis Cms » Version: 2006.1
    cpe:2.3:a:elxis:elxis_cms:2006.1
  • Elxis » Elxis Cms » Version: 2006.2
    cpe:2.3:a:elxis:elxis_cms:2006.2
  • Elxis » Elxis Cms » Version: 2006.3
    cpe:2.3:a:elxis:elxis_cms:2006.3
  • Elxis » Elxis Cms » Version: 2006.4
    cpe:2.3:a:elxis:elxis_cms:2006.4


Contact Us

Shodan ® - All rights reserved