Back

CVE-2002-1720

SQL injection vulnerability in Spooky Login 2.0 through 2.5 allows remote attackers to bypass authentication and gain privileges via the password field.

Published: Dec 31, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (6)

Vendor Product Version
outfront spooky_login 2.0
outfront spooky_login 2.1
outfront spooky_login 2.2
outfront spooky_login 2.3
outfront spooky_login 2.4
outfront spooky_login 2.5

GitHub Security Advisory GHSA-grhf-jvxv-chm6

SQL injection vulnerability in Spooky Login 2.0 through 2.5 allows remote attackers to bypass...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.68%

Top 16% most likely to be exploited

Threat Score 30.8 / 100

Data Sources

NVD EPSS GitHub