Multiple SQL injection vulnerabilities in ASP Portal allow remote attackers to execute arbitrary SQL commands via the (1) ItemID parameter to classifieds.asp and the (2) ID parameter to Events.asp.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.021
EPSS Ranking 79.4%