CVE-2015-2147
CRITICALPhpbugtracker < 1.6.0 - SQL Injection
Title source: ruleDescription
Multiple SQL injection vulnerabilities in Issuetracker phpBugTracker before 1.7.0 allow remote attackers to execute arbitrary SQL commands via unspecified parameters.
Exploits (1)
Scores
CVSS v3
9.8
EPSS
0.0037
EPSS Percentile
58.7%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-89
Status
published
Products (1)
phpbugtracker_project/phpbugtracker
< 1.6.0
Published
Oct 06, 2017
Tracked Since
Feb 18, 2026