Vulnerability Details CVE-2010-3212
SQL injection vulnerability in index.php in Seagull 0.6.7 and earlier allows remote attackers to execute arbitrary SQL commands via the frmQuestion parameter in a retrieve action, in conjunction with a user/password PATH_INFO.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 65.2%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2010-3212
-
cpe:2.3:a:seagullproject.org:seagull:*
-
cpe:2.3:a:seagullproject.org:seagull:0.4.6
-
cpe:2.3:a:seagullproject.org:seagull:0.4.7
-
cpe:2.3:a:seagullproject.org:seagull:0.6.0
-
cpe:2.3:a:seagullproject.org:seagull:0.6.1
-
cpe:2.3:a:seagullproject.org:seagull:0.6.2
-
cpe:2.3:a:seagullproject.org:seagull:0.6.3
-
cpe:2.3:a:seagullproject.org:seagull:0.6.4
-
cpe:2.3:a:seagullproject.org:seagull:0.6.5
-
cpe:2.3:a:seagullproject.org:seagull:0.6.6