AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-2577

HIGH · CVSS 7.5 EPSS 2.01%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-05-09 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-2577
Severity
HIGH
CVSS
7.5
EPSS
2.01%

Original NVD Description

Multiple SQL injection vulnerabilities in ACP3 4.0 beta 3 allow remote attackers to execute arbitrary SQL commands via (1) the mode parameter to feeds.php, the (2) form[cat] parameter to (a) news/list/index.php or (b) certain news/details/id_*/action_create/index.php files, or (3) the form[mods][] parameter to search/list/action_search/index.php.