Back

CVE-2003-0286

SQL injection vulnerability in register.asp in Snitz Forums 2000 before 3.4.03, and possibly 3.4.07 and earlier, allows remote attackers to execute arbitrary stored procedures via the Email variable.

Published: Jun 16, 2003 Modified: Jun 16, 2026
CWE-89

CVSS Metrics

Affected Products (1)

Vendor Product Version
snitz_communications snitz_forums_2000 *

GitHub Security Advisory GHSA-6fp7-cr5p-93qp

SQL injection vulnerability in register.asp in Snitz Forums 2000 before 3.4.03, and possibly 3.4...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.44%

Top 17% most likely to be exploited

Threat Score 30.7 / 100

Data Sources

NVD EPSS GitHub