Back
CVE-2004-2263
SQL injection vulnerability in the valid function in fr_left.php in PlaySMS 0.7 and earlier allows remote attackers to modify SQL statements via the vc2 cookie.
Published: Dec 31, 2004
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (2)
| Vendor | Product | Version |
|---|---|---|
| playsms | playsms | 0.6 |
| playsms | playsms | 0.7 |
GitHub Security Advisory GHSA-p74v-jj7j-x3f3
SQL injection vulnerability in the valid function in fr_left.php in PlaySMS 0.7 and earlier...
References (12)
- http://securitytracker.com/id?1010984 Patch
- http://sourceforge.net/project/shownotes.php?release_id=254915 Patch
- http://www.osvdb.org/8984 Patch
- http://www.securiteam.com/unixfocus/5UP0F2ADPS.html Exploit, Vendor Advisory
- http://www.securityfocus.com/bid/10970 Exploit, Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17031
- http://securitytracker.com/id?1010984 Patch
- http://sourceforge.net/project/shownotes.php?release_id=254915 Patch
- http://www.osvdb.org/8984 Patch
- http://www.securiteam.com/unixfocus/5UP0F2ADPS.html Exploit, Vendor Advisory
- http://www.securityfocus.com/bid/10970 Exploit, Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17031
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.35%
Top 31% most likely to be exploited
Threat Score
30.4 / 100
Data Sources
NVD
EPSS
GitHub