Back

CVE-2004-1732

SQL injection vulnerability in out.ViewFolder.php in MyDMS before 1.4.2 allows remote attackers to execute arbitrary SQL commands via the folderid parameter.

Published: Aug 20, 2004 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (2)

Vendor Product Version
mydms mydms 1.4
mydms mydms 1.4.1

GitHub Security Advisory GHSA-qqw5-9xgq-fw5j

SQL injection vulnerability in out.ViewFolder.php in MyDMS before 1.4.2 allows remote attackers...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.35%

Top 31% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub