Lucene search

K
cvelistMitreCVELIST:CVE-2012-1665
HistoryMay 20, 2015 - 6:00 p.m.

CVE-2012-1665

2015-05-2018:00:00
mitre
www.cve.org
2

8.4 High

AI Score

Confidence

Low

0.006 Low

EPSS

Percentile

78.1%

Multiple SQL injection vulnerabilities in the admin panel in osCMax before 2.5.1 allow (1) remote attackers to execute arbitrary SQL commands via the username parameter in a process action to admin/login.php or (2) remote administrators to execute arbitrary SQL commands via the status parameter to admin/stats_monthly_sales.php or (3) country parameter in a process action to admin/create_account_process.php.

8.4 High

AI Score

Confidence

Low

0.006 Low

EPSS

Percentile

78.1%