7.5
CVE-2007-2543
- EPSS 1.2%
- Veröffentlicht 09.05.2007 01:19:00
- Zuletzt bearbeitet 16.06.2026 22:39:48
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in game.php in the Flashgames 1.0.1 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the lid parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Xoops ≫ Flashgames Module Version1.0.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.2% | 0.642 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://osvdb.org/34472
http://secunia.com/advisories/25155
http://www.securityfocus.com/bid/23820
http://www.vupen.com/english/advisories/2007/1668
https://exchange.xforce.ibmcloud.com/vulnerabilities/34076
https://www.exploit-db.com/exploits/3849