cve/2007/CVE-2007-1960.md

18 lines
682 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2007-1960](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1960)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
SQL injection vulnerability in visit.php in the Rha7 Downloads (rha7downloads) 1.0 module for XOOPS, and possibly other versions up to 1.10, allows remote attackers to execute arbitrary SQL commands via the lid parameter.
### POC
#### Reference
- https://www.exploit-db.com/exploits/3666
#### Github
No PoCs found on GitHub currently.