7.5
CVSSv2

CVE-2002-2391

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in index.php of WebChat 1.5 included in XOOPS 1.0 allows remote malicious users to execute arbitrary SQL commands via the roomid parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

webchat.org webchat 1.5

xoops xoops 1.0