peter bassill · operator
$ cve CVE-2003-0735 JSON

CVE-2003-0735 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 1.7% (pctl 76)

Patch early

A public exploit exists.

Description

SQL injection vulnerability in the Calendar module of phpWebSite 0.9.x and earlier allows remote attackers to execute arbitrary SQL queries, as demonstrated using the year parameter.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS1.67% — more likely to be exploited than 76% of all CVEs
On CISA KEVno
Public exploityes
Published2003-10-20
Last modified2026-06-16

Affected (1)

VendorProduct
phpwebsitephpwebsite

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD