HIGH
Multiple SQL injection vulnerabilities in Invision Gallery before 1.3.1 allow remote attackers to execute arbitrary SQL commands via (1) the comment parameter in an editcomment action or (2) the rating parameter when voting on a photo
Published Jun 14, 2005
7.5
HIGHCVSS 2.0
EPSS 1.17%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.