7.5
CVE-2007-0053
- EPSS 1.24%
- Veröffentlicht 04.01.2007 22:28:00
- Zuletzt bearbeitet 16.06.2026 22:34:47
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in detail.asp in ASP SiteWare autoDealer 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the iPro parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Asp Siteware ≫ Autodealer Version <= 2.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.24% | 0.651 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://osvdb.org/32539
http://secunia.com/advisories/23572
http://www.securityfocus.com/bid/21833
http://www.vupen.com/english/advisories/2007/0016
https://exchange.xforce.ibmcloud.com/vulnerabilities/31219
https://www.exploit-db.com/exploits/3062