PoC Index

CVE-2005-3996

MEDIUM 5.1EPSS 1.9%

SQL injection vulnerability in admin/password_forgotten.php in Zen Cart 1.2.6d and earlier allows remote attackers to execute arbitrary SQL commands via the admin_email parameter.

CVSS v2.0
5.1 MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
EPSS
1.93% chance of exploitation in the next 30 days, 79th percentile
Published
2005-12-05
Updated
2024-08-07

ExploitDB entries (1)

References

Related