7.5
CVE-2005-4264
- EPSS 1.33%
- Veröffentlicht 15.12.2005 11:03:00
- Zuletzt bearbeitet 16.06.2026 22:18:28
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple SQL injection vulnerabilities in index.php in PHP Support Tickets 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password fields, and (3) id parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Triangle Solutions ≫ Php Support Tickets Version2.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.33% | 0.674 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/18067
http://securitytracker.com/id?1015352
http://www.nii.co.in/vuln/PHPSupportTickets.html
http://www.osvdb.org/21730
http://www.securityfocus.com/bid/15853
http://www.vupen.com/english/advisories/2005/2928