PoC Index

CVE-2002-0932

MEDIUM 6.4EPSS 1.2%

SQL injection vulnerability in index.php for MyHelpDesk 20020509, and possibly other versions, allows remote attackers to conduct unauthorized activities via SQL code in the "id" parameter for the operations (1) detailticket, (2) editticket, or (3) updateticketlog.

CVSS v2.0
6.4 MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
EPSS
1.25% chance of exploitation in the next 30 days, 67th percentile
Published
2002-08-31
Updated
2024-08-08

ExploitDB entries (1)

References

Related