7.5
CVE-2005-1779
- EPSS 2.03%
- Veröffentlicht 31.05.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:13:40
- Erkennungen
SQL injection vulnerability in password.asp in MaxWebPortal 1.35, 1.36, 2.0, and 20050418 Next allows remote attackers to execute arbitrary SQL commands via the memKey parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Maxwebportal ≫ Maxwebportal Version 1.35
Maxwebportal ≫ Maxwebportal Version 1.36
Maxwebportal ≫ Maxwebportal Version 2.0
Maxwebportal ≫ Maxwebportal Version 2005-04-18
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.03% | 0.785 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/15511
http://securitytracker.com/id?1014048