CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
AI Score
Confidence
Low
EPSS
Percentile
73.2%
SQL injection vulnerability in spaces/emailuser.php in Interact 2.4.1 allows remote attackers to execute arbitrary SQL commands via the email_user_key parameter.
Vendor | Product | Version | CPE |
---|---|---|---|
cce-interact | interact | 2.4.1 | cpe:2.3:a:cce-interact:interact:2.4.1:*:*:*:*:*:*:* |
secunia.com/advisories/32359
secunia.com/secunia_research/2008-44/
securityreason.com/securityalert/4537
sourceforge.net/tracker/index.php?func=detail&aid=2208205&group_id=69681&atid=525406
www.securityfocus.com/archive/1/497967/100/0/threaded
www.securityfocus.com/bid/32014
exchange.xforce.ibmcloud.com/vulnerabilities/46267