7.5
CVE-2005-3423
- EPSS 2.17%
- Veröffentlicht 01.11.2005 22:02:00
- Zuletzt bearbeitet 16.06.2026 22:16:56
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple SQL injection vulnerabilities in Subdreamer 2.2.1 allow remote attackers to execute arbitrary SQL commands via (1) the loginusername parameter or (2) cookies to (a) subdreamer.php, (b) ipb2.php, (c) phpbb2.php, (d) vbulletin2.php, and (e) vbulletin3.php.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Subdreamer ≫ Subdreamer Version2.2.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.17% | 0.799 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://rst.void.ru/papers/advisory35.txt
http://secunia.com/advisories/17378
http://www.osvdb.org/20378
http://www.osvdb.org/20379
http://www.osvdb.org/20380
http://www.osvdb.org/20381
http://www.osvdb.org/20382
http://www.osvdb.org/20384
http://www.securityfocus.com/bid/15238