Unrated severityNVD Advisory· Published Sep 9, 2009· Updated Apr 23, 2026
CVE-2009-3119
CVE-2009-3119
Description
SQL injection vulnerability in screen.php in the Download System mSF (dsmsf) module for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the view_id parameter.
Affected products
1- cpe:2.3:a:x-iweb.ru:download_system_msf:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- packetstormsecurity.org/0908-exploits/phpfusiondsmsf-sql.txtnvdExploit
- www.securityfocus.com/bid/36180nvdExploit
- www.vupen.com/english/advisories/2009/2469nvdVendor Advisory
News mentions
0No linked articles in our index yet.