Ynet Interactive - http://demo.ynetinteractive.com/mobiketa/ Mobiketa 4.0 is affected by: SQL Injection. The impact is: Code execution (remote).
References
Link | Resource |
---|---|
https://www.exploit-db.com/exploits/41283 | Exploit Third Party Advisory VDB Entry |
http://demo.ynetinteractive.com/mobiketa/index.php?url=myCampaign&view=-9999'+/*!50000union*/+select=[SQL] | Permissions Required |
Configurations
Information
Published : 2019-05-09 11:29
Updated : 2019-05-10 10:31
NVD link : CVE-2017-12760
Mitre link : CVE-2017-12760
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
ynetinteractive
- mobiketa