7.5
CVE-2007-2675
- EPSS 1.78%
- Veröffentlicht 14.05.2007 23:19:00
- Zuletzt bearbeitet 16.06.2026 22:40:05
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in search.php in Pre Classifieds Listings 1.0 allows remote attackers to execute arbitrary SQL commands via the category parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Pre Projects ≫ Pre Classifieds Listings Version1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.78% | 0.753 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://osvdb.org/35597
http://secunia.com/advisories/25144
http://www.securityfocus.com/bid/23795
http://www.securityfocus.com/bid/52543
http://www.securityfocus.com/bid/52543/exploit
http://www.vupen.com/english/advisories/2007/1655
https://exchange.xforce.ibmcloud.com/vulnerabilities/34037
https://www.exploit-db.com/exploits/3840