Описание
Multiple SQL injection vulnerabilities in PHPSurveyor before 0.991 allow remote attackers to execute arbitrary SQL commands via the (1) sql parameter in browse.php and the (2) sid, (3) lid, (4) gid, and (5) token parameters in certain PHP scripts.
Multiple SQL injection vulnerabilities in PHPSurveyor before 0.991 allow remote attackers to execute arbitrary SQL commands via the (1) sql parameter in browse.php and the (2) sid, (3) lid, (4) gid, and (5) token parameters in certain PHP scripts.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2005-4586
- http://secunia.com/advisories/18167
- http://sourceforge.net/project/shownotes.php?release_id=381050&group_id=74605
- http://www.osvdb.org/22039
- http://www.osvdb.org/22184
- http://www.phpsurveyor.org/mantis/view.php?id=286
- http://www.phpsurveyor.org/mantis/view.php?id=287
- http://www.securityfocus.com/bid/16077
EPSS
Процентиль: 74%
0.00816
Низкий
CVE ID
Связанные уязвимости
nvd
около 20 лет назад
Multiple SQL injection vulnerabilities in PHPSurveyor before 0.991 allow remote attackers to execute arbitrary SQL commands via the (1) sql parameter in browse.php and the (2) sid, (3) lid, (4) gid, and (5) token parameters in certain PHP scripts.
EPSS
Процентиль: 74%
0.00816
Низкий