SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2001-0418

content.pl script in NCM Content Management System allows remote attackers to read arbitrary contents of the content database by inserting SQL characters into the id parameter.

MEDIUM 5.0EPSS 2.77%

Does this matter?

Lower severity and a low EPSS score (2.77%). Track it; it rarely justifies an emergency change on its own.

Description

content.pl script in NCM Content Management System allows remote attackers to read arbitrary contents of the content database by inserting SQL characters into the id parameter.

CVSS 2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS
2.77% probability · 86th percentile
CISA KEV
Not listed
Affected
ncm/ncm content management system
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.