Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2009-2604

EPSS 0.23% · P46
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2009-2604

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Multiple SQL injection vulnerabilities in adminlogin.asp in Zen Help Desk 2.1 allow remote attackers to execute arbitrary SQL commands via the (1) userid (aka username) and (2) PassWord parameters to admin.asp.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Zen Help Desk adminlogin.asp SQL注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Zen Help Desk 2.1中的adminlogin.asp存在多个SQL注入漏洞,允许远程攻击者借助对admin.asp的(1)用户ID(又称用户名username)参数,(2)密码参数执行任意的SQL指令。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2009-2604

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2009-2604

登录查看更多情报信息。

Same Patch Batch · n/a · 2009-07-27 · 26 CVEs total

CVE-2009-2619Datachecknh DataCheck Solutions V-SpacePal login.asp SQL注入漏洞
CVE-2009-2606Brainjar ASP Football Pool权限许可和信息泄露漏洞
CVE-2009-2605Traidnt Up 脚本adminquery.php SQL注入漏洞
CVE-2009-2603Escon SupportPortal Pro index.php多个SQL注入漏洞
CVE-2009-2602R2 Newsletter权限许可和信息泄露漏洞
CVE-2009-2601Joomlaequipment SQL注入漏洞
CVE-2009-2600Akiva Webboard view.php目录遍历漏洞
CVE-2009-2599Radscripts RadCLASSIFIEDS Gold index.php SQL注入漏洞
CVE-2009-2598Online Grades & Attendance多个SQL注入漏洞
CVE-2009-2597Sun Java系统访问管理器Policy Agent拒绝服务漏洞
CVE-2009-2596Sun Solaris Auditing扩展文件属性本地拒绝服务漏洞
CVE-2008-6878Zen Cart 路径遍历漏洞
CVE-2008-6877Zen Cart 路径遍历漏洞
CVE-2009-2607Pinme com_pinboard SQL注入漏洞
CVE-2009-2618Maxdev MDPro Survey模块'modules.php' SQL注入漏洞
CVE-2009-2617BaoFeng Storm 库medialib.dll 栈溢出漏洞
CVE-2009-2616Datachecknh DataCheck Solutions SitePal z_admin_login.asp SQL注入漏洞
CVE-2009-2615Datachecknh DataCheck Solutions SitePal多个跨站脚本攻击漏洞
CVE-2009-2614Datachecknh DataCheck Solutions LinkPal z_admin_login.asp SQL注入漏洞
CVE-2009-2613Datachecknh DataCheck Solutions LinkPal多个跨站脚本攻击漏洞

Showing top 20 of 26 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2009-2604

No comments yet


Leave a comment