peter bassill · operator
$ cve CVE-2001-0418 JSON

CVE-2001-0418 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 2.8% (pctl 86)

Patch early

A public exploit exists.

Description

content.pl script in NCM Content Management System allows remote attackers to read arbitrary contents of the content database by inserting SQL characters into the id parameter.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS2.77% — more likely to be exploited than 86% of all CVEs
On CISA KEVno
Public exploityes
Published2001-07-02
Last modified2026-06-16

Affected (1)

VendorProduct
ncmncm content management system

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD