Back

CVE-2004-2326

SQL injection vulnerability in IP3 Networks NetAccess Appliance before firmware 3.1.18b13 allows remote attackers to bypass authentication via the (1) login or (2) password. NOTE: this issue was later reported to also affect firmware 4.0.34.

Published: Dec 31, 2004 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (3)

Vendor Product Version
ip3_networks ip3_netaccess *
ip3_networks ip3_netaccess_-_hospitality *
ip3_networks ip3_netaccess_-_wireless_hotspots *

GitHub Security Advisory GHSA-9mfx-3qq6-gr5m

SQL injection vulnerability in IP3 Networks NetAccess Appliance before firmware 3.1.18b13 allows...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.36%

Top 31% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub