Back

CVE-2005-0697

SQL injection vulnerability in the process_picture function xp_publish.php in CopperExport 0.2.1 allows remote attackers to execute arbitrary SQL commands, possibly via the (1) title, (2) caption, or (3) keywords parameters.

Published: Mar 7, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (2)

Vendor Product Version
brt copperexport 0.1
brt copperexport 0.2

GitHub Security Advisory GHSA-356f-7q6g-m7rg

SQL injection vulnerability in the process_picture function xp_publish.php in CopperExport 0.2.1...

References (4)

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.11%

Top 37% most likely to be exploited

Threat Score 30.3 / 100

Data Sources

NVD EPSS GitHub