VULNERABILITY INTELLIGENCE
CVE-2012-6504
CVSS score7.5 HIGH
EPSS probability1.12%
CISA KEVNot currently listed
Published2013-01-24
Last modified2026-06-16
Description
SQL injection vulnerability in mods/hours/data/get_hours.php in PHP Volunteer Management 1.0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.