Lucene search

K
cvelistMitreCVELIST:CVE-2007-2314
HistoryApr 26, 2007 - 9:00 p.m.

CVE-2007-2314

2007-04-2621:00:00
mitre
www.cve.org
4

AI Score

8.1

Confidence

Low

EPSS

0.008

Percentile

82.2%

Multiple SQL injection vulnerabilities in Crea-Book 1.0, and possibly earlier, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) pseudo or (2) passe parameter to (a) configurer.php, (b) connect.php, © delete.php, (d) delete2.php, (e) index.php, (f) infos.php, (g) membres.php, (h) modif-infos.php, (i) modif-message.php, (j) modif.php, (k) uninstall.php, or (l) uninstall_table.php in admin/, different vectors than CVE-2007-2000. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

AI Score

8.1

Confidence

Low

EPSS

0.008

Percentile

82.2%

Related for CVELIST:CVE-2007-2314