CVE-2005-2461 - CERT CVE
ID CVE-2005-2461
Sažetak Multiple SQL injection vulnerabilities in the calendar feature in Kayako liveResponse 2.x allow remote attackers to execute arbitrary SQL commands via the (1) year or (2) date parameter.
Reference
CVSS
Base: 6.4
Impact: 4.9
Exploitability:10.0
Pristup
VektorSloženostAutentikacija
NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL PARTIAL NONE
CVSS vektor AV:N/AC:L/Au:N/C:P/I:P/A:N
Zadnje važnije ažuriranje 18-10-2016 - 03:27
Objavljeno 31-12-2005 - 05:00