7.5
CVE-2005-1287
- EPSS 2.16%
- Veröffentlicht 23.04.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:12:46
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple SQL injection vulnerabilities in BK Forum 4.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to member.asp, (2) forum parameter to forum.asp, or (3) various parameters in register.asp.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.16% | 0.799 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://marc.info/?l=bugtraq&m=111428133317901&w=2
http://secunia.com/advisories/15072
http://securitytracker.com/id?1013793
http://www.digitalparadox.org/advisories/bkdev.txt
http://www.osvdb.org/15784
http://www.osvdb.org/15785
http://www.osvdb.org/15786
http://www.securityfocus.com/archive/1/431659/100/0/threaded
http://www.securityfocus.com/archive/1/431863/100/0/threaded