AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2010-2672

HIGH · CVSS 7.5 EPSS 1.33%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-07-08 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2010-2672
Severity
HIGH
CVSS
7.5
EPSS
1.33%

Original Filing — NVD Description

Multiple SQL injection vulnerabilities in eZ Publish 3.7.0 through 4.2.0 allow remote attackers to execute arbitrary SQL commands via the (1) SectionID and (2) SearchTimestamp parameters to the search feature and the (3) SearchContentClassAttributeID parameter to the advancedsearch feature.