PoC Index

CVE-2005-1948

HIGH 7.5EPSS 1.2%

Multiple SQL injection vulnerabilities in Invision Gallery before 1.3.1 allow remote attackers to execute arbitrary SQL commands via (1) the comment parameter in an editcomment action or (2) the rating parameter when voting on a photo.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
1.17% chance of exploitation in the next 30 days, 65th percentile
Published
2005-06-14
Updated
2024-08-07

ExploitDB entries (1)

References

Related