cvelist/2008/7xxx/CVE-2008-7030.json
2018-10-11 16:05:44 -04:00

78 lines
2.2 KiB
JSON

{
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2008-7030",
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
"data_version" : "4.0",
"description" : {
"description_data" : [
{
"lang" : "eng",
"value" : "Multiple SQL injection vulnerabilities in Site2Nite Real Estate Web allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password field to an unspecified component, possibly agentlist.asp. NOTE: this issue was disclosed by an unreliable researcher, so it might be incorrect."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"name" : "20080213 Provided By Development Solutions SQL Injection Exploit(panel)",
"refsource" : "BUGTRAQ",
"url" : "http://www.securityfocus.com/archive/1/488070/100/200/threaded"
},
{
"name" : "27779",
"refsource" : "BID",
"url" : "http://www.securityfocus.com/bid/27779"
},
{
"name" : "51076",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/51076"
},
{
"name" : "realestateweb-agentlist-sql-injection(40509)",
"refsource" : "XF",
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/40509"
}
]
}
}