Description
SQL injection vulnerability in ajax.php in evalSMSI 2.1.03 allows remote attackers to execute arbitrary SQL commands via the query parameter in the (1) question action, and possibly the (2) sub_par or (3) num_quest actions.
Published: 2010-02-11
Score: 7.5 High
EPSS: 1.4% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2010-0645 SQL injection vulnerability in ajax.php in evalSMSI 2.1.03 allows remote attackers to execute arbitrary SQL commands via the query parameter in the (1) question action, and possibly the (2) sub_par or (3) num_quest actions.
History

No history.

Subscriptions

Myshell Evalsmsi
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T00:52:19.908Z

Reserved: 2010-02-11T00:00:00.000Z

Link: CVE-2010-0614

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2010-02-11T17:30:01.190

Modified: 2025-04-11T00:51:21.963

Link: CVE-2010-0614

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses