Описание
SQL injection vulnerability in search.php in phxEventManager 2.0 beta 5 allows remote attackers to execute arbitrary SQL commands via the search_terms parameter.
SQL injection vulnerability in search.php in phxEventManager 2.0 beta 5 allows remote attackers to execute arbitrary SQL commands via the search_terms parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2012-1124
- http://seclists.org/fulldisclosure/2012/Mar/4
- http://sourceforge.net/tracker/?func=detail&aid=3496086&group_id=123602&atid=697109
- http://www.exploit-db.com/exploits/18549
- http://www.openwall.com/lists/oss-security/2012/03/06/10
- http://www.openwall.com/lists/oss-security/2012/03/06/2
EPSS
Процентиль: 88%
0.03907
Низкий
CVE ID
Связанные уязвимости
CVSS3: 9.8
nvd
почти 6 лет назад
SQL injection vulnerability in search.php in phxEventManager 2.0 beta 5 allows remote attackers to execute arbitrary SQL commands via the search_terms parameter.
EPSS
Процентиль: 88%
0.03907
Низкий