CVE-2005-4546 - CERT CVE
ID CVE-2005-4546
Sažetak search.php in eggblog 2.0 allows remote attackers to obtain the full path via an invalid q parameter, as used by the Keyword and Search fields, possibly due to an SQL injection vulnerability.
Reference
CVSS
Base: 7.8
Impact: 6.9
Exploitability:10.0
Pristup
VektorSloženostAutentikacija
NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE NONE COMPLETE
CVSS vektor AV:N/AC:L/Au:N/C:N/I:N/A:C
Zadnje važnije ažuriranje 20-07-2017 - 01:29
Objavljeno 28-12-2005 - 11:03