ID

VAR-201209-0694


TITLE

DeltaScripts PHP Links has multiple SQL injection vulnerabilities

Trust: 0.6

sources: CNVD: CNVD-2012-5095

DESCRIPTION

DeltaScripts is a website driver. DeltaScripts PHP Links has multiple SQL injection vulnerabilities. Because the program fails to sufficiently filter user-supplied data before it is used in SQL queries, attackers can use vulnerabilities to compromise applications, access or modify data, or exploit potential vulnerabilities in the underlying database

Trust: 0.81

sources: CNVD: CNVD-2012-5095 // BID: 55478

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2012-5095

AFFECTED PRODUCTS

vendor:deltascriptsmodel:php linksscope:eqversion:2012

Trust: 0.6

sources: CNVD: CNVD-2012-5095

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201209-644

TYPE

SQL injection

Trust: 0.6

sources: CNNVD: CNNVD-201209-644

EXTERNAL IDS

db:BIDid:55478

Trust: 1.5

db:CNVDid:CNVD-2012-5095

Trust: 0.6

db:CNNVDid:CNNVD-201209-644

Trust: 0.6

sources: CNVD: CNVD-2012-5095 // BID: 55478 // CNNVD: CNNVD-201209-644

REFERENCES

url:http://www.securityfocus.com/bid/55478

Trust: 1.2

url:http://www.deltascripts.com/phplinks

Trust: 0.3

sources: CNVD: CNVD-2012-5095 // BID: 55478 // CNNVD: CNNVD-201209-644

CREDITS

L0n3ly-H34rT

Trust: 0.9

sources: BID: 55478 // CNNVD: CNNVD-201209-644

SOURCES

db:CNVDid:CNVD-2012-5095
db:BIDid:55478
db:CNNVDid:CNNVD-201209-644

LAST UPDATE DATE

2022-05-17T02:04:42.701000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2012-5095date:2012-09-13T00:00:00
db:BIDid:55478date:2012-09-10T00:00:00
db:CNNVDid:CNNVD-201209-644date:2012-09-28T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2012-5095date:2012-09-13T00:00:00
db:BIDid:55478date:2012-09-10T00:00:00
db:CNNVDid:CNNVD-201209-644date:2012-09-28T00:00:00