CVE-2007-2626
Last modified
CVE-2007-2626 is a vulnerability of currently unknown severity. SQL injection vulnerability in admin.php in SchoolBoard allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters. NOTE: CVE disputes this issue, because 'username' does not exist, and the password is not used in any queries. EPSS estimates a 1.09% chance of exploitation in the next 30 days.
Description
SQL injection vulnerability in admin.php in SchoolBoard allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters. NOTE: CVE disputes this issue, because 'username' does not exist, and the password is not used in any queries
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Free Php Scripts | Schoolboard | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-2626?
How severe is CVE-2007-2626?
How do I fix CVE-2007-2626?
Are you affected by CVE-2007-2626?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
