VulnerabilityModified
CVE-2007-1289
SQL injection vulnerability in ViewBugs.php in Tyger Bug Tracking System (TygerBT) 1.1.3 allows remote attackers to execute arbitrary SQL commands via the s parameter.
MEDIUM 6.4EPSS 1.21%
Does this matter?
Lower severity and a low EPSS score (1.21%). Track it; it rarely justifies an emergency change on its own.
Description
SQL injection vulnerability in ViewBugs.php in Tyger Bug Tracking System (TygerBT) 1.1.3 allows remote attackers to execute arbitrary SQL commands via the s parameter.
- CVSS 2.0
- 6.4 MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
- EPSS
- 1.21% probability · 67th percentile
- CISA KEV
- Not listed
- Affected
- tyger/bug tracking system
- Source
- cve@mitre.org
References
- http://osvdb.org/35817
- http://secunia.com/advisories/24385Vendor Advisory
- http://securityreason.com/securityalert/2356
- http://www.securityfocus.com/archive/1/461801/100/0/threaded
- http://www.securityfocus.com/bid/22799Exploit, Vendor Advisory
- http://www.vupen.com/english/advisories/2007/0822
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32791
- http://osvdb.org/35817
- http://secunia.com/advisories/24385Vendor Advisory
- http://securityreason.com/securityalert/2356
- http://www.securityfocus.com/archive/1/461801/100/0/threaded
- http://www.securityfocus.com/bid/22799Exploit, Vendor Advisory
- http://www.vupen.com/english/advisories/2007/0822
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32791
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.