Back
CVE-2005-4356
SQL injection vulnerability in UStore allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password fields. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Published: Dec 20, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| xmpie | ustore | * |
GitHub Security Advisory GHSA-chfv-xhr2-p6ww
SQL injection vulnerability in UStore allows remote attackers to execute arbitrary SQL commands...
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.20%
Top 34% most likely to be exploited
Threat Score
30.4 / 100
Data Sources
NVD
EPSS
GitHub