7.5
CVE-2005-4207
- EPSS 1.16%
- Veröffentlicht 13.12.2005 11:03:00
- Zuletzt bearbeitet 16.06.2026 22:18:21
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in BTGrup Admin WebController Script allows remote attackers to execute SQL commands via the (1) Username and (2) Password fields.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.16% | 0.631 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://securityreason.com/securityalert/249
http://www.osvdb.org/21815
http://www.securityfocus.com/archive/1/419237/100/0/threaded
http://www.securityfocus.com/bid/15819