peter bassill · operator
$ cve CVE-2007-2675 JSON

CVE-2007-2675 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 1.8% (pctl 77)

Patch early

A public exploit exists.

Description

SQL injection vulnerability in search.php in Pre Classifieds Listings 1.0 allows remote attackers to execute arbitrary SQL commands via the category parameter.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS1.76% — more likely to be exploited than 77% of all CVEs
On CISA KEVno
Public exploityes
Published2007-05-14
Last modified2026-06-16

Affected (1)

VendorProduct
pre projectspre classifieds listings

Public exploits

SourceTitleDate
exploit-dbASP Classifieds - SQL Injection2012-03-17
exploit-dbPre Classifieds Listings 1.0 - SQL Injection2007-05-03

References

→ the Explorer  ·  watch your stack  ·  NVD