header-logo
Suggest Exploit
vendor:
TML CMS
by:
SecurityFocus
7.5
CVSS
HIGH
Multiple Input Validation Vulnerabilities
20
CWE
Product Name: TML CMS
Affected Version From: 0.5
Affected Version To: 0.5
Patch Exists: Unknown
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Unknown
2005

TML CMS Multiple Input Validation Vulnerabilities

TML CMS is prone to multiple input validation vulnerabilities. Successful exploitation of these vulnerabilities could result in a compromise of the application, disclosure or modification of data, the theft of cookie-based authentication credentials. They may also permit an attacker to exploit vulnerabilities in the underlying database implementation as well as other attacks.

Mitigation:

Input validation should be used to detect unauthorized input before it is processed by the application.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/15876/info
 
TML CMS is prone to multiple input validation vulnerabilities.
 
Successful exploitation of these vulnerabilities could result in a compromise of the application, disclosure or modification of data, the theft of cookie-based authentication credentials. They may also permit an attacker to exploit vulnerabilities in the underlying database implementation as well as other attacks.
 
TML CMS 0.5 is reportedly affected. Other versions may be vulnerable as well. 

http://www.example.com/[ztml]/index.php?doc=unote&id=[sql]