CVE-2008-2789
43Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 23%
from disclosure to weapon963 days
Published on NVDJun 20
metasploit+963d
exploitation probability
23%top 3% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
SQL injection vulnerability in pages/index.php in BASIC-CMS allows remote attackers to execute arbitrary SQL commands via the page_id parameter.
Affected products
n/a · n/apublic PoCs found — 2
cve_referencepacketstormsecurity.org/1002-exploits/basiccms-sqlxss.txtunverifiedcve_referencewww.exploit-db.com/exploits/5836unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.