Files
CVEs-PoC/2008/CVE-2008-4620.md
T
2024-06-18 02:51:15 +02:00

19 lines
726 B
Markdown

### [CVE-2008-4620](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4620)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
SQL injection vulnerability in Meeting Room Booking System (MRBS) before 1.4 allows remote attackers to execute arbitrary SQL commands via the area parameter to (1) month.php, and possibly (2) day.php and (3) week.php.
### POC
#### Reference
- http://securityreason.com/securityalert/4450
- https://www.exploit-db.com/exploits/6781
#### Github
No PoCs found on GitHub currently.