2024-12-08 03:06:42 +00:00

106 lines
3.0 KiB
JSON

{
"id": "CVE-2007-6373",
"sourceIdentifier": "cve@mitre.org",
"published": "2007-12-15T01:46:00.000",
"lastModified": "2024-11-21T00:39:59.540",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Multiple SQL injection vulnerabilities in GestDown 1.00 Beta allow remote attackers to execute arbitrary SQL commands via the (1) categorie parameter to catdownload.php, or the id parameter to (2) download.php or (3) hitcounter.php."
},
{
"lang": "es",
"value": "M\u00faltiples vulnerabilidades de inyecci\u00f3n SQL en GestDown 1.00 Beta. Permite que atacantes remotos ejecuten comandos SQL de su elecci\u00f3n, usando (1) el par\u00e1metro categorie pasado a catdownload.php, o el par\u00e1metro id pasado a (2) download.php o (3) hitcounter.php."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
"baseScore": 7.5,
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL"
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-89"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:gestdown:gestdown:1.00_beta:*:*:*:*:*:*:*",
"matchCriteriaId": "06CBC5AF-B1EA-4ACD-BBC2-3F05F979C86B"
}
]
}
]
}
],
"references": [
{
"url": "http://marc.info/?l=bugtraq&m=119730791316604&w=2",
"source": "cve@mitre.org",
"tags": [
"Exploit"
]
},
{
"url": "http://www.securityfocus.com/bid/26799",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/38945",
"source": "cve@mitre.org"
},
{
"url": "http://marc.info/?l=bugtraq&m=119730791316604&w=2",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Exploit"
]
},
{
"url": "http://www.securityfocus.com/bid/26799",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/38945",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
]
}