PoC Index

CVE-2012-2105

HIGH 7.5EPSS 1.9%

Multiple SQL injection vulnerabilities in login.php in Timesheet Next Gen 1.5.2 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
1.92% chance of exploitation in the next 30 days, 78th percentile
Published
2012-09-19
Updated
2024-08-06

Proof-of-concept exploits (1)

ExploitDB entries (1)

References

Related