10
CVE-2004-0250
- EPSS 1.44%
- Veröffentlicht 23.11.2004 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain privileges via (1) the product parameter in showproduct.php or (2) the cat parameter in showcat.php.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Photopost ≫ Photopost Php Pro Version3.1
Photopost ≫ Photopost Php Pro Version3.2
Photopost ≫ Photopost Php Pro Version3.3
Photopost ≫ Photopost Php Pro Version4.0
Photopost ≫ Photopost Php Pro Version4.1
Photopost ≫ Photopost Php Pro Version4.6
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.44% | 0.799 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|