7.5
CVE-2007-1296
- EPSS 1.04%
- Veröffentlicht 07.03.2007 00:19:00
- Zuletzt bearbeitet 16.06.2026 22:37:18
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in postingdetails.php in AJ Classifieds 1.0 allows remote attackers to execute arbitrary SQL commands via the postingid parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Aj Square ≫ Aj Classifieds Version1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.04% | 0.595 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://www.securityfocus.com/bid/22808
http://osvdb.org/35452
http://www.vupen.com/english/advisories/2007/0833
https://exchange.xforce.ibmcloud.com/vulnerabilities/32786
https://www.exploit-db.com/exploits/3410