CVE-2013-7216
Last modified
CVE-2013-7216 is a vulnerability of currently unknown severity. Multiple SQL injection vulnerabilities in Classifieds Creator 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) ID parameter to demo/classifieds/product.asp, or (2) UserID or (3) Password field to demo/classifieds/admin.asp.. EPSS estimates a 1.30% chance of exploitation in the next 30 days.
Description
Multiple SQL injection vulnerabilities in Classifieds Creator 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) ID parameter to demo/classifieds/product.asp, or (2) UserID or (3) Password field to demo/classifieds/admin.asp.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Etoshop | Classifieds Creator | 2.0 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-7216?
How severe is CVE-2013-7216?
How do I fix CVE-2013-7216?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-7201WebHybridClient.java in PayPal 5.3 and earlier for Android i…
- CVE-2013-7202The WebHybridClient class in PayPal 5.3 and earlier for Andr…
- CVE-2013-7203gitolite before commit fa06a34 might allow local users to re…
- CVE-2013-7204Cross-site request forgery (CSRF) vulnerability in set_users…
- CVE-2013-7205Off-by-one error in the process_cgivars function in contrib/…
- CVE-2013-7209Cross-site request forgery (CSRF) vulnerability in admBase/l…
- CVE-2013-7217Unspecified vulnerability in Zimbra Collaboration Server 7.2…
- CVE-2013-7219SQL injection vulnerability in vote.php in the 2Glux Sexy Po…
- CVE-2013-7220js/ui/screenShield.js in GNOME Shell (aka gnome-shell) befor…
- CVE-2013-7221The automatic screen lock functionality in GNOME Shell (aka …
- CVE-2013-7222config/initializers/secret_token.rb in Fat Free CRM before 0…
- CVE-2013-7223Multiple cross-site request forgery (CSRF) vulnerabilities i…
Are you affected by CVE-2013-7216?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
