7.5
CVE-2005-0377
- EPSS 1.51%
- Veröffentlicht 02.05.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:11:00
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in imageview.php for SGallery 1.01 allows remote attackers to execute arbitrary SQL commands via the (1) idalbum or (2) idimage parameters.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sergey Kiselev ≫ Sgallery Version1.01
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.51% | 0.712 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://lists.grok.org.uk/pipermail/full-disclosure/2005-January/030844.html
http://marc.info/?l=bugtraq&m=110557050700947&w=2
http://secunia.com/advisories/13824
http://securitytracker.com/id?1012868
http://www.waraxe.us/advisory-39.html
http://www.securityfocus.com/bid/12249
https://exchange.xforce.ibmcloud.com/vulnerabilities/18876