← back
CVE-2007-3127

CVE-2007-3127

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 3.0%
from disclosure to weapon0 days
Published on NVDJun 19
1st PoCJun 18
exploitation probability
3.0%top 14% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
content.php in WSPortal 1.0, when magic_quotes_gpc is disabled, allows remote attackers to obtain sensitive information via a "';" (quote semicolon) sequence in the page parameter, which reveals the installation path in the resulting forced SQL error message.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.