Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2007-4173

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2007-4173
Last Modified 15 Nov 2008 01:56:06
Published 07 Aug 2007 06:17:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2007-4173

Summary

SQL injection vulnerability in duyuruoku.asp in Hunkaray Okul Portali 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2007-3080.

Vulnerable Systems

Application

  • Hunkaray Okul Portaly 1.1


References

MISC - http://yollubunlar.org/hunkaray-okul-portali-v1.1-tr-sql-injection-vuln-44.html

BID - 25185

BUGTRAQ - 20070802 Hunkaray Okul Portali v1.1 (tr) Sql injection Vuln

SECUNIA - 26323

OSVDB - 36272

XF - hunkaray-duyuruoku-sql-injection(35778)

SREASON - 2966


Last Updated: 27 May 2016 10:45:46