6.5 Medium
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
SINGLE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:S/C:P/I:P/A:P
7.6 High
AI Score
Confidence
Low
0.003 Low
EPSS
Percentile
65.7%
SQL injection vulnerability in Best Practical Solutions RT 2.x and 3.x before 3.8.12 and 4.x before 4.0.6 allows remote authenticated users to execute arbitrary SQL commands by leveraging access to a privileged account.
lists.bestpractical.com/pipermail/rt-announce/2012-May/000202.html
lists.bestpractical.com/pipermail/rt-announce/2012-May/000203.html
lists.bestpractical.com/pipermail/rt-announce/2012-May/000204.html
osvdb.org/82136
secunia.com/advisories/49259
www.securityfocus.com/bid/53660
exchange.xforce.ibmcloud.com/vulnerabilities/75824