Lucene search

K
prionPRIOn knowledge basePRION:CVE-2007-1548
HistoryMar 20, 2007 - 10:19 p.m.

Sql injection

2007-03-2022:19:00
PRIOn knowledge base
www.prio-n.com
1

9 High

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.0%

SQL injection vulnerability in functions/functions_filters.asp in Web Wiz Forums before 8.05a (MySQL version) does not properly filter certain characters in SQL commands, which allows remote attackers to execute arbitrary SQL commands via "’ (backslash double-quote quote) sequences, which are collapsed into '', as demonstrated via the name parameter to forum/pop_up_member_search.asp.

9 High

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.0%

Related for PRION:CVE-2007-1548