« Volver al listado

CVE-2007-3539

Estado: ModificadaAlta (7.5)—

Multiple SQL injection vulnerabilities in QuickTicket 1.2 build:20070621 and QuickTalk Forum 1.3 allow remote attackers to execute arbitrary SQL commands via the (1) t and (2) f parameters in (a) qti_ind_post.php and (b) qti_ind_post_prt.php; (3) dir and (4) order parameters in qti_ind_member.php; (5) id parameter in qti_usr.php; and the (6) f parameter in qti_ind_topic.php. NOTE: it was later reported that vector 5 also affects 1.4, 1.5, and 1.5.0.3.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (2)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2007-3539",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 7.5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 6.4,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": true,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2007-07-03T20:30:00.000",
  "references": [
    {
      "url": "http://osvdb.org/37606",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/38956",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/38957",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/38958",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/38959",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/42684",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://pridels-team.blogspot.com/2007/06/quickticket-multiple-sql-inj.html",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/29299",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/28176",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2007/2367",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/35100",
      "source": "cve@mitre.org"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/41065",
      "source": "cve@mitre.org"
    },
    {
      "url": "https://www.exploit-db.com/exploits/5222",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/37606",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://osvdb.org/38956",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://osvdb.org/38957",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://osvdb.org/38958",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://osvdb.org/38959",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://osvdb.org/42684",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://pridels-team.blogspot.com/2007/06/quickticket-multiple-sql-inj.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/29299",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/28176",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2007/2367",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/35100",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/41065",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://www.exploit-db.com/exploits/5222",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-89"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Multiple SQL injection vulnerabilities in QuickTicket 1.2 build:20070621 and QuickTalk Forum 1.3 allow remote attackers to execute arbitrary SQL commands via the (1) t and (2) f parameters in (a) qti_ind_post.php and (b) qti_ind_post_prt.php; (3) dir and (4) order parameters in qti_ind_member.php; (5) id parameter in qti_usr.php; and the (6) f parameter in qti_ind_topic.php.  NOTE: it was later reported that vector 5 also affects 1.4, 1.5, and 1.5.0.3."
    },
    {
      "lang": "es",
      "value": "Múltiples vulnerabilidades de inyección SQL en QuickTicket versión 1.2 build:20070621 y QuickTalk Forum versión 1.3, permite a atacantes remotos ejecutar comandos SQL arbitrarios por medio de los parámetros (1) t y (2) f en los archivos (a) qti_ind_post.php y (b) qti_ind_post_prt.php; en los parámetros (3) dir y (4) order en el archivo qti_ind_member.php; el (5) parámetro id en el archivo  qti_usr.php; y el (6) parámetro f en el archivo  qti_ind_topic.php. NOTA: fue reportado más tarde que el vector 5 también afecta a las versiones 1.4, 1.5 y 1.5.0.3."
    }
  ],
  "lastModified": "2026-06-16T22:42:14.850",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:qt-cute:quicktalk_forum:1.3:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "84C9BCEA-9079-474C-8FFB-76012B191F49"
            },
            {
              "criteria": "cpe:2.3:a:qt-cute:quicktalk_forum:1.4:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "550EEDBD-B3B3-487B-92E6-D53DC33D8BC7"
            },
            {
              "criteria": "cpe:2.3:a:qt-cute:quicktalk_forum:1.5.0.3:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "164695C8-43A7-45E7-8B9C-14414D16732B"
            },
            {
              "criteria": "cpe:2.3:a:qt-cute:quickticket:1.2_build_2007_06_21:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "23ACFD7E-D043-4EF8-B4CE-FB29B4F75EF6"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}