AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2004-1225

HIGH · CVSS 10 EPSS 1.76%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-01-10 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 10.0. It may be remotely exploitable. It involves a SQL injection risk.

CVE
CVE-2004-1225
Severity
HIGH
CVSS
10
EPSS
1.76%

Original NVD Description

SQL injection vulnerability in SugarCRM Sugar Sales before 2.0.1a allows remote attackers to execute arbitrary SQL commands and gain privileges via the record parameter in a DetailView action to index.php, and record parameters in other functionality.