SQL Injection Vulnerability in OpenDocMan by OpenDocMan
CVE-2009-3788

Currently unrated

Key Information:

Vendor

Opendocman

Vendor
CVE Published:
26 October 2009

Badges

๐Ÿ‘พ Exploit Exists

What is CVE-2009-3788?

A SQL injection vulnerability exists in index.php of OpenDocMan 1.2.5, allowing remote attackers to execute arbitrary SQL commands. This vulnerability exploits the frmuser parameter, which fails to properly sanitize user input, enabling attackers to compromise the database and potentially manipulate or extract sensitive information.

References

Timeline

  • ๐ŸŸก

    Public PoC available

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.