Unrated severityNVD Advisory· Published Nov 23, 2004· Updated Apr 16, 2026
CVE-2004-0272
CVE-2004-0272
Description
SQL injection vulnerability in MaxWebPortal allows remote attackers to inject arbitrary SQL code and gain sensitive information via the SendTo parameter in Personal Messages.
Affected products
2cpe:2.3:a:maxwebportal:maxwebportal:1.30:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:maxwebportal:maxwebportal:1.30:*:*:*:*:*:*:*
- cpe:2.3:a:maxwebportal:maxwebportal:1.31:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/bid/9625nvdExploitVendor Advisory
- marc.infonvd
- exchange.xforce.ibmcloud.com/vulnerabilities/15121nvd
News mentions
0No linked articles in our index yet.