CVE-2010-1538
published 2010-04-26CVE-2010-1538: SQL injection vulnerability in print_raincheck.php in phpRAINCHECK 1.0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id…
PriorityP342high7.5CVSS 2.0
AVNACLAuNCPIPAP
EXPLOIT
EPSS
0.97%
57.3th percentile
SQL injection vulnerability in print_raincheck.php in phpRAINCHECK 1.0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| bluestrikeweb | phpraincheck | <= 1.0.1 | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Suricata
GPL WEB_SERVER iisadmin access
suricata·2010-09-23
CVE-1999-1538 GPL WEB_SERVER iisadmin access
GPL WEB_SERVER iisadmin access
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"GPL WEB_SERVER iisadmin access"; flow:established,to_server; http.uri; content:"/iisadmin"; nocase; reference:bugtraq,189; reference:cve,1999-1538; reference:nessus,11032; classtype:web-application-attack; sid:2100993; rev:15; metadata:created_at 2010_09_23, cve CVE_1999_1538, signature_severity Unknown, updated_at 2024_03_08;)
No writeups or analysis indexed.
http://packetstormsecurity.org/1002-exploits/phpraincheck-sql.txthttp://www.exploit-db.com/exploits/11586http://www.securityfocus.com/bid/38521https://exchange.xforce.ibmcloud.com/vulnerabilities/56578http://packetstormsecurity.org/1002-exploits/phpraincheck-sql.txthttp://www.exploit-db.com/exploits/11586http://www.securityfocus.com/bid/38521https://exchange.xforce.ibmcloud.com/vulnerabilities/56578
2010-04-26
Published