7.5
CVE-2005-0774
- EPSS 1.24%
- Veröffentlicht 10.03.2005 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:11:44
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in member.php and possibly other scripts in PhotoPost PHP 5.0 RC3 allows remote attackers to execute arbitrary SQL commands via the uid parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Photopost ≫ Photopost Php Pro Version5.0_rc3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.24% | 0.654 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://marc.info/?l=bugtraq&m=111065868402859&w=2
http://secunia.com/advisories/14576
http://www.securityfocus.com/bid/12779
https://exchange.xforce.ibmcloud.com/vulnerabilities/19675