📦

cwguestbook

Vendor: maxdev

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 0.93% Exploit Prob.
Latest CVE CVE-2009-2307 Jul 02

Security Vulnerability Index

Page 1 / 1
7.5 CVSS
CVE-2009-2307
Exploit Found

SQL injection vulnerability in the CWGuestBook module 2.1 and earlier for MAXdev MDPro (aka MD-Pro) allows remote attackers to execute arbitrary SQL commands via the rid parameter in a viewrecords action to modules.php.

EPSS: 0.93%