Back

CVE-2005-1779

SQL injection vulnerability in password.asp in MaxWebPortal 1.35, 1.36, 2.0, and 20050418 Next allows remote attackers to execute arbitrary SQL commands via the memKey parameter.

Published: May 31, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (4)

Vendor Product Version
maxwebportal maxwebportal 1.35
maxwebportal maxwebportal 1.36
maxwebportal maxwebportal 2.0
maxwebportal maxwebportal 2005-04-18

GitHub Security Advisory GHSA-gqv4-c46p-2rv2

SQL injection vulnerability in password.asp in MaxWebPortal 1.35, 1.36, 2.0, and 20050418 Next...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.03%

Top 21% most likely to be exploited

Threat Score 30.6 / 100

Data Sources

NVD EPSS GitHub