cve/2007/CVE-2007-3687.md
2024-05-26 14:27:05 +02:00

700 B

CVE-2007-3687

Description

SQL injection vulnerability in inferno.php in the Inferno Technologies RPG Inferno 2.4 and earlier, a vBulletin module, allows remote authenticated attackers to execute arbitrary SQL commands via the id parameter in a ScanMember do action.

POC

Reference

Github

No PoCs found on GitHub currently.