FS IMDB Clone 1.0 has SQL Injection via the movie.php f parameter, tvshow.php s parameter, or show_misc_video.php id parameter.
References
Link | Resource |
---|---|
https://packetstormsecurity.com/files/145313/FS-IMDB-Clone-1.0-SQL-Injection.html | Exploit Third Party Advisory VDB Entry |
https://www.exploit-db.com/exploits/43251/ | Exploit Third Party Advisory VDB Entry |
Configurations
History
No history.
Information
Published : 2017-12-13 09:29
Updated : 2020-09-29 17:11
NVD link : CVE-2017-17588
Mitre link : CVE-2017-17588
CVE.ORG link : CVE-2017-17588
JSON object : View
Products Affected
imdb_clone_project
- imdb_clone
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')