VRDA Feed by JPCERT/CC
  Vulnerability Response Decision Assistance Feed : Information for vulnerability impact analysis
[ about VRDA Feed | JPCERT/CC



 
Vulnerability Analysis Result (Revision No : 1) [ Download XML
CVE-2010-1744
b2b_gold_script: SQL injection vulnerability in product.html in B2B ...
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-1744

Original

SQL injection vulnerability in product.html in B2B Gold Script allows remote attackers to execute arbitrary SQL commands via the id parameter.

Translation   (Show)





About This Analysis Information
Analysis Information Provider:
NIST NVD
First Published:
2010-05-06
Source Information Category:
Advisory, Alert
Last Updated:
2010-05-07




Affected Product Tags
cpe:/a:alibabaclone:b2b_gold_script
 


Vulnerability Analysis Results
[Access Vector]  [?]
Undefined [?]

Local [?]
Adjacent Network [?]
X Network [?]

[Access Complexit]  [?]
Undefined [?]

High [?]
Medium [?]
X Low [?]

[Authentication]  [?]
Undefined [?]

Multiple [?]
Single [?]
X None [?]

[Confidentiality Impact]  [?]
Undefined [?]

None [?]
X Partial [?]
Complete [?]

[Integrity Impact]  [?]
Undefined [?]

None [?]
X Partial [?]
Complete [?]

[Availability Impact]  [?]
Undefined [?]

None [?]
X Partial [?]
Complete [?]

Alternatives




References
BID 39830




MISC http://www.exploit-db.com/exploits/12460




MISC http://packetstormsecurity.org/1004-exploits/b2bgoldscript-sql.txt




OSVDB 64212




SECUNIA 39710




Vulnerability Type SQL Injection (CWE-89)




XF b2bgoldscript-id-sql-injection(58265)





Copyright © 2010 JPCERT/CC All Rights Reserved.