Описание
SQL injection vulnerability in eFiction 1.1 allows remote attackers to execute arbitrary SQL commands via the uid parameter to viewuser.php.
SQL injection vulnerability in eFiction 1.1 allows remote attackers to execute arbitrary SQL commands via the uid parameter to viewuser.php.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2005-4170
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23373
- http://archives.neohapsis.com/archives/bugtraq/2005-11/0301.html
- http://rgod.altervista.org/efiction2_xpl.html
- http://secunia.com/advisories/17777
- http://securitytracker.com/id?1015273
- http://www.efiction.wallflowergirl.com/forums/viewtopic.php?t=1555
- http://www.osvdb.org/21122
- http://www.securityfocus.com/bid/15568
- http://www.vupen.com/english/advisories/2005/2606
EPSS
Процентиль: 85%
0.02394
Низкий
CVE ID
Связанные уязвимости
nvd
около 20 лет назад
SQL injection vulnerability in eFiction 1.1 allows remote attackers to execute arbitrary SQL commands via the uid parameter to viewuser.php.
EPSS
Процентиль: 85%
0.02394
Низкий