PoC Index

CVE-2005-4251

HIGH 7.5EPSS 1.3%

Multiple SQL injection vulnerabilities in mcGallery PRO 2.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id, (2) start, and (3) rand parameters to show.php, and the (4) album parameter to index.php.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
1.29% chance of exploitation in the next 30 days, 68th percentile
Published
2005-12-14
Updated
2024-08-07

ExploitDB entries (2)

References

Related