7.5
CVE-2007-1630
- EPSS 1.2%
- Veröffentlicht 23.03.2007 21:19:00
- Zuletzt bearbeitet 16.06.2026 22:37:59
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in default.asp in ActiveWebSoftwares Active Link Engine allows remote attackers to execute arbitrary SQL commands via the catid parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.2% | 0.64 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/24574
http://www.osvdb.org/34364
http://www.securityfocus.com/bid/23080
http://www.vupen.com/english/advisories/2007/1071
https://exchange.xforce.ibmcloud.com/vulnerabilities/33111
https://www.exploit-db.com/exploits/3534