Unrated severityNVD Advisory· Published Jun 18, 2007· Updated Apr 23, 2026
CVE-2007-3250
CVE-2007-3250
Description
SQL injection vulnerability in mod_banners.php in Elxis CMS before 2006.4 20070613 allows remote attackers to execute arbitrary SQL commands via the mb_tracker cookie. NOTE: the product was patched without updating the version number; later downloads of 2006.4 are not affected.
Affected products
4Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.elxis.org/index.phpnvdPatch
- www.securityfocus.com/bid/24478nvdPatch
- osvdb.org/36305nvd
- secunia.com/advisories/25684nvd
- securityreason.com/securityalert/2806nvd
- www.securityfocus.com/archive/1/471399/100/0/threadednvd
- www.vupen.com/english/advisories/2007/2218nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/34873nvd
News mentions
0No linked articles in our index yet.