Description

PHP Melody version 3.0 contains a remote SQL injection vulnerability in the video edit module that allows authenticated attackers to inject malicious SQL commands. Attackers can exploit the unvalidated 'vid' parameter to execute arbitrary database queries and potentially compromise the web application and database management system.

INFO

Published Date :

2026-02-01T12:15:49.150Z

Last Modified :

2026-03-05T01:29:17.029Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2021-47915 vulnerability.

Vendors Products
Phpsugar
  • Php Melody

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact