CVE-2002-0607

members.asp in Snitz Forums 2000 version 3.3.03 and earlier allows remote attackers to execute arbitrary code via a SQL injection attack on the parameters (1) M_NAME, (2) UserName, (3) FirstName, (4) LastName, or (5) INITIAL.

Scoring

CVSS base score
0.05
EPSS probability
1.30%
Published
2002-06-11
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs