Lucene search

K
nvd[email protected]NVD:CVE-2010-3212
HistorySep 03, 2010 - 6:00 p.m.

CVE-2010-3212

2010-09-0318:00:04
CWE-89
web.nvd.nist.gov
2

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.3

Confidence

Low

EPSS

0.001

Percentile

37.5%

SQL injection vulnerability in index.php in Seagull 0.6.7 and earlier allows remote attackers to execute arbitrary SQL commands via the frmQuestion parameter in a retrieve action, in conjunction with a user/password PATH_INFO.

Affected configurations

Nvd
Node
seagullproject.orgseagullRange0.6.7
OR
seagullproject.orgseagullMatch0.4.6
OR
seagullproject.orgseagullMatch0.4.7
OR
seagullproject.orgseagullMatch0.6.0
OR
seagullproject.orgseagullMatch0.6.0rc1
OR
seagullproject.orgseagullMatch0.6.0rc2
OR
seagullproject.orgseagullMatch0.6.0rc3
OR
seagullproject.orgseagullMatch0.6.1
OR
seagullproject.orgseagullMatch0.6.2
OR
seagullproject.orgseagullMatch0.6.3
OR
seagullproject.orgseagullMatch0.6.4
OR
seagullproject.orgseagullMatch0.6.5
OR
seagullproject.orgseagullMatch0.6.6
VendorProductVersionCPE
seagullproject.orgseagull*cpe:2.3:a:seagullproject.org:seagull:*:*:*:*:*:*:*:*
seagullproject.orgseagull0.4.6cpe:2.3:a:seagullproject.org:seagull:0.4.6:*:*:*:*:*:*:*
seagullproject.orgseagull0.4.7cpe:2.3:a:seagullproject.org:seagull:0.4.7:*:*:*:*:*:*:*
seagullproject.orgseagull0.6.0cpe:2.3:a:seagullproject.org:seagull:0.6.0:*:*:*:*:*:*:*
seagullproject.orgseagull0.6.0cpe:2.3:a:seagullproject.org:seagull:0.6.0:rc1:*:*:*:*:*:*
seagullproject.orgseagull0.6.0cpe:2.3:a:seagullproject.org:seagull:0.6.0:rc2:*:*:*:*:*:*
seagullproject.orgseagull0.6.0cpe:2.3:a:seagullproject.org:seagull:0.6.0:rc3:*:*:*:*:*:*
seagullproject.orgseagull0.6.1cpe:2.3:a:seagullproject.org:seagull:0.6.1:*:*:*:*:*:*:*
seagullproject.orgseagull0.6.2cpe:2.3:a:seagullproject.org:seagull:0.6.2:*:*:*:*:*:*:*
seagullproject.orgseagull0.6.3cpe:2.3:a:seagullproject.org:seagull:0.6.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 131

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.3

Confidence

Low

EPSS

0.001

Percentile

37.5%

Related for NVD:CVE-2010-3212