SQL injection vulnerability in protect.php in X-Scripts X-Protection 1.10, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 66.8%