7.5
CVE-2005-1779
- EPSS 0.26%
- Veröffentlicht 31.05.2005 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in password.asp in MaxWebPortal 1.35, 1.36, 2.0, and 20050418 Next allows remote attackers to execute arbitrary SQL commands via the memKey parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Maxwebportal ≫ Maxwebportal Version1.35
Maxwebportal ≫ Maxwebportal Version1.36
Maxwebportal ≫ Maxwebportal Version2.0
Maxwebportal ≫ Maxwebportal Version2005-04-18
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.26% | 0.493 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|