CVE-2001-0418 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 2.8% (pctl 86)
Patch early
A public exploit exists.
Description
content.pl script in NCM Content Management System allows remote attackers to read arbitrary contents of the content database by inserting SQL characters into the id parameter.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
| EPSS | 2.77% — more likely to be exploited than 86% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2001-07-02 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| ncm | ncm content management system |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | NCM Content Management System - content.pl Input Validation | 2001-04-13 |
References
→ the Explorer · watch your stack · NVD