CVE-2002-2277
PortailPHP 0.99 - SQL Injection via mod_search/index.php Parameters
Title source: llmDescription
SQL injection vulnerability in mod_search/index.php in PortailPHP 0.99 allows remote attackers to execute arbitrary SQL commands via the (1) $rech, (2) $BD_Tab_docs, (3) $BD_Tab_file, (4) $BD_Tab_liens, (5) $BD_Tab_faq, or (6) $chemin variables.
References (3)
Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/10735
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/6273
Patch mailing-list
x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2002-11/0359.html
Scores
EPSS
0.0105
EPSS Percentile
60.9%
Details
CWE
CWE-89
Status
published
Products (1)
portail_web_php/portail_web_php
0.99
Published
Dec 31, 2002
Tracked Since
Feb 18, 2026