← back
CVE-2009-2439

CVE-2009-2439

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 1.0%
from disclosure to weapon7 days
Published on NVDJul 13
1st PoC+7d
exploitation probability
1.0%top 40% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Multiple SQL injection vulnerabilities in Web Development House Alibaba Clone allow remote attackers to execute arbitrary SQL commands via the (1) IndustryID parameter to category.php and the (2) SellerID parameter to supplier/view_contact_details.php. NOTE: this is a product that was developed by a third party; it is not associated with alibaba.com or the Alibaba Group.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.