7.5
CVE-2005-3545
- EPSS 1.75%
- Veröffentlicht 16.11.2005 07:42:00
- Zuletzt bearbeitet 16.06.2026 22:17:09
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in index.php of the report module in ibProArcade 2.5.2 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibproarcade ≫ Ibproarcade Version <= 2.5.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.75% | 0.749 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://osvdb.org/20514
http://secunia.com/advisories/17457
http://securityreason.com/securityalert/151
http://www.ibproarcade.com/index.php?showtopic=7575&pid=47370&st=0&#entry47370
http://www.ibproarcade.com/index.php?showtopic=7576&pid=47373&st=0&#entry47373
http://www.securityfocus.com/archive/1/415793
http://www.securityfocus.com/bid/15333
http://www.vupen.com/english/advisories/2005/2334