VULNERABILITY INTELLIGENCE
CVE-2011-5076
CVSS score7.5 HIGH
EPSS probability1.10%
CISA KEVNot currently listed
Published2012-02-08
Last modified2026-06-16
Description
SQL injection vulnerability in model/comment.class.php in HDWiki 5.0, 5.1, and possibly other versions allows remote attackers to execute arbitrary SQL commands via the PATH_INFO to index.php. NOTE: some of these details are obtained from third party information.