Vulnerability Details CVE-2005-2323
Multiple SQL injection vulnerabilities in Class-1 Forum 0.24.4 and 0.23.2, and Clever Copy with forums installed, allow remote attackers to modify SQL statements via the (1) id parameter to viewattach.php, (2) viewuser_id parameter to users.php, or the (3) id or (4) forum parameter to viewforum.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.2%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2005-2323
-
cpe:2.3:a:class-1:class-1_forum:0.23.2
-
cpe:2.3:a:class-1:class-1_forum:0.24.4
-
cpe:2.3:a:clever_copy:clever_copy:*