Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2003-1520

EPSS 1.21% · P79
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2003-1520

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
SQL injection vulnerability in FuzzyMonkey My Classifieds 2.11 allows remote attackers to execute arbitrary SQL commands via the email parameter.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
FuzzyMonkey MyClassifieds Email变量SQL注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
My Classifieds SQL是一款方便快捷构建站点论坛系统的脚本。 My Classifieds SQL由于没有充分过滤用户提交的$email变量,远程攻击者可以利用这个漏洞进行SQL注入攻击,可以更改数据库信息或破坏数据库。 攻击者提交恶意SQL代码到Email变量,可导致更改原来应用系统的SQL逻辑,如使软件写用户密码到一个全局可读的文件中,利用这些敏感信息进一步对系统进行攻击,也可以对数据库进行破坏操作。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2003-1520

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2003-1520

登录查看更多情报信息。

Same Patch Batch · n/a · 2007-10-25 · 34 CVEs total

CVE-2003-1521Sun Java非法Java程序软盘访问漏洞
CVE-2003-1512mIRC DCC SEND缓冲区溢出漏洞
CVE-2003-1513Caucho Resin多个HTML注入和跨站脚本漏洞
CVE-2003-1514Emule web控制板超长密码服务拒绝漏洞
CVE-2003-1515Origo ADSL路由器远程管理接口配置漏洞
CVE-2003-1516Sun Java跨站Applet Sandbox安全模型冲突漏洞
CVE-2003-1517Dansie Shopping Cart Server错误消息安装路径泄露漏洞
CVE-2003-1518WinSyslog超长Syslog消息远程拒绝服务攻击漏洞
CVE-2003-1519Vivisimo分类归并引擎搜索脚本跨站脚本漏洞
CVE-2003-1511Bajie HTTP Server 实例脚本和程序跨站脚本漏洞
CVE-2003-1522PSCS VPOP3 Email Server WebAdmin跨站脚本漏洞
CVE-2003-1523DBMail IMAP Service SQL注入漏洞
CVE-2003-1524PGPDisk转换用户未授权访问漏洞
CVE-2003-1525My Photo Gallery未明漏洞
CVE-2003-1526PHP-Nuke搜索字段路径泄露漏洞
CVE-2007-2983British Telecommunications Consumer Webhelper 'btwebcontrol.dll'ActiveX控件多个缓冲区溢出漏洞
CVE-2007-5679DeeEmm.com DM CMS 'Index.PHP' SQL注入漏洞
CVE-2003-1495HP Management Software Web代理未授权访问漏洞
CVE-2003-1510Rit Research Labs TinyWeb服务器远程服务拒绝漏洞
CVE-2003-1509RealOne Player临时文件默认浏览器脚本执行漏洞

Showing top 20 of 34 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2003-1520

No comments yet


Leave a comment