CVE-2008-6236
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 1.0%
from disclosure to weapon0 days
Published on NVDFeb 21
1st PoCNov 4
exploitation probability
1.0%top 41% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
SQL injection vulnerability in login.php in Simple Document Management System (SDMS) 1.1.5 and 1.1.4, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the login parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/6987⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.