Описание
SQL injection vulnerability in SearchResults.asp in ImageRacer 1.0, when WordSearchCrit is enabled, allows remote attackers to execute arbitrary SQL commands via the SearchWord parameter.
SQL injection vulnerability in SearchResults.asp in ImageRacer 1.0, when WordSearchCrit is enabled, allows remote attackers to execute arbitrary SQL commands via the SearchWord parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2007-3987
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35537
- http://osvdb.org/36277
- http://outlaw.aria-security.info/?p=7
- http://secunia.com/advisories/26169
- http://securityreason.com/securityalert/2925
- http://www.securityfocus.com/archive/1/474419/100/0/threaded
- http://www.securityfocus.com/bid/25010
EPSS
Процентиль: 66%
0.01214
Низкий
CVE ID
Связанные уязвимости
nvd
около 19 лет назад
SQL injection vulnerability in SearchResults.asp in ImageRacer 1.0, when WordSearchCrit is enabled, allows remote attackers to execute arbitrary SQL commands via the SearchWord parameter.
EPSS
Процентиль: 66%
0.01214
Низкий