VULNERABILITY INTELLIGENCE

CVE-2012-6504

CVSS score7.5 HIGH
EPSS probability1.12%
CISA KEVNot currently listed
Published2013-01-24
Last modified2026-06-16

Description

SQL injection vulnerability in mods/hours/data/get_hours.php in PHP Volunteer Management 1.0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.