Lucene search

K
cvelistMitreCVELIST:CVE-2005-3236
HistoryOct 14, 2005 - 4:00 a.m.

CVE-2005-3236

2005-10-1404:00:00
mitre
www.cve.org
4

AI Score

7.6

Confidence

Low

EPSS

0.006

Percentile

78.3%

Multiple SQL injection vulnerabilities in Cyphor 0.19 allow remote attackers to execute arbitrary SQL and obtain administrative access via (1) the fid parameter of newmsg.php, which can enable XSS attacks when the SQL syntax is invalid or (2) the nick parameter of lostpwd.php.

AI Score

7.6

Confidence

Low

EPSS

0.006

Percentile

78.3%

Related for CVELIST:CVE-2005-3236