PoC Index

CVE-2005-2461

MEDIUM 6.4EPSS 2.3%

Multiple SQL injection vulnerabilities in the calendar feature in Kayako liveResponse 2.x allow remote attackers to execute arbitrary SQL commands via the (1) year or (2) date parameter.

CVSS v2.0
6.4 MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
EPSS
2.29% chance of exploitation in the next 30 days, 82th percentile
Published
2006-06-06
Updated
2024-08-07

ExploitDB entries (1)

References

Related