7.5
CVE-2004-2218
- EPSS 2.44%
- Veröffentlicht 31.12.2004 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:09:15
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in pmwh.php in PHPMyWebHosting 0.3.4 and earlier allows remote attackers to modify SQL statements via the password parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Phpmywebhosting ≫ Phpmywebhosting Version <= 0.3.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.44% | 0.822 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://archives.neohapsis.com/archives/bugtraq/2004-08/0207.html
http://archives.neohapsis.com/archives/bugtraq/2004-09/0247.html
http://www.osvdb.org/8976
http://www.securityfocus.com/bid/10942
https://exchange.xforce.ibmcloud.com/vulnerabilities/17005