Back

CVE-2005-4309

SQL injection vulnerability in ezUpload Pro 2.2 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified search module parameters.

Published: Dec 17, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (5)

Vendor Product Version
scriptscenter ezupload_pro *
scriptscenter ezupload_pro 1.1
scriptscenter ezupload_pro 2.0
scriptscenter ezupload_pro 2.0.1
scriptscenter ezupload_pro 2.1

GitHub Security Advisory GHSA-j5mp-hh89-pmcx

SQL injection vulnerability in ezUpload Pro 2.2 and earlier allows remote attackers to execute...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.33%

Top 31% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub