Back

CVE-2003-0557

SQL injection vulnerability in login.asp for StoreFront 6.0, and possibly earlier versions, allows remote attackers to obtain sensitive user information via SQL statements in the password field.

Published: Aug 18, 2003 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
lagarde storefront *

GitHub Security Advisory GHSA-76hh-5qhw-7w85

SQL injection vulnerability in login.asp for StoreFront 6.0, and possibly earlier versions,...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.04%

Top 39% most likely to be exploited

Threat Score 30.3 / 100

Data Sources

NVD EPSS GitHub