CVE-2010-1713
SQL injection vulnerability in modules.php in PostNuke 0.764 allows remote attackers to execute arbitrary SQL commands via the sid parameter in a News article modload action.
- Affected products
- Postnuke
- Postnuke
- = 0.764
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 2.0% (79th percentile)
- Weakness
- CWE-89
- NVD status
- Modified
- Published
- 2010-05-04
CVE-2010-1713 at NVD
1 known exploit for CVE-2010-1713
Proof-of-concept code and exploit modules indexed by Sploitus