7.5
CVE-2005-4309
- EPSS 0.6%
- Veröffentlicht 17.12.2005 00:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in ezUpload Pro 2.2 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified search module parameters.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Scriptscenter ≫ Ezupload Pro Version <= 2.2
Scriptscenter ≫ Ezupload Pro Version1.1
Scriptscenter ≫ Ezupload Pro Version2.0
Scriptscenter ≫ Ezupload Pro Version2.0.1
Scriptscenter ≫ Ezupload Pro Version2.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.6% | 0.67 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|