CVE-2007-3539 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 4.8% (pctl 92)
Patch early
A public exploit exists.
Description
Multiple SQL injection vulnerabilities in QuickTicket 1.2 build:20070621 and QuickTalk Forum 1.3 allow remote attackers to execute arbitrary SQL commands via the (1) t and (2) f parameters in (a) qti_ind_post.php and (b) qti_ind_post_prt.php; (3) dir and (4) order parameters in qti_ind_member.php; (5) id parameter in qti_usr.php; and the (6) f parameter in qti_ind_topic.php. NOTE: it was later reported that vector 5 also affects 1.4, 1.5, and 1.5.0.3.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 4.83% — more likely to be exploited than 92% of all CVEs |
| Weakness | CWE-89 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2007-07-03 |
| Last modified | 2026-06-16 |
Affected (2)
| Vendor | Product |
|---|---|
| qt-cute | quicktalk forum |
| qt-cute | quickticket |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | QuickTicket 1.5 - 'qti_usr.php' SQL Injection | 2008-03-09 |
References
- http://osvdb.org/37606
- http://osvdb.org/38956
- http://osvdb.org/38957
- http://osvdb.org/38958
- http://osvdb.org/38959
- http://osvdb.org/42684
- http://pridels-team.blogspot.com/2007/06/quickticket-multiple-sql-inj.html
- http://secunia.com/advisories/29299
- http://www.securityfocus.com/bid/28176
- http://www.vupen.com/english/advisories/2007/2367
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35100
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41065
- https://www.exploit-db.com/exploits/5222
- http://osvdb.org/37606
- http://osvdb.org/38956
- http://osvdb.org/38957
- http://osvdb.org/38958
- http://osvdb.org/38959
- http://osvdb.org/42684
- http://pridels-team.blogspot.com/2007/06/quickticket-multiple-sql-inj.html
→ the Explorer · watch your stack · NVD