CVE-2010-1605

NCT Jobs Portal Script - SQL Injection via anyword or cityname Parameter

Title source: llm
STIX 2.1

Description

Multiple SQL injection vulnerabilities in isearch.php in NCT Jobs Portal Script allow remote attackers to execute arbitrary SQL commands via the (1) anyword and (2) cityname parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

References (2)

Core 2
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/39601
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/58079

Scores

EPSS 0.0100
EPSS Percentile 59.3%

Details

CWE
CWE-89
Status published
Products (1)
ncrypted/nct_jobs_portal_script
Published Apr 29, 2010
Tracked Since Feb 18, 2026