PoC Index

CVE-2010-1046

HIGH 7.5EPSS 1.0%

Multiple SQL injection vulnerabilities in index.php in Rostermain 1.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) userid (username) and (2) password parameters.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
0.97% chance of exploitation in the next 30 days, 60th percentile
Published
2010-03-22
Updated
2024-08-07

Proof-of-concept exploits (1)

ExploitDB entries (1)

References

Related