CVE-2014-100020: Itechscripts Itechclassifieds
High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.
SQL injection vulnerability in ChangeEmail.php in iTechClassifieds 3.03.057 allows remote attackers to execute arbitrary SQL commands via the PreviewNum parameter. NOTE: the CatID parameter is already covered by CVE-2008-0685.
Affected products
- Itechscripts Itechclassifieds: version 3.03.057 only
Published 2015-01-13. Last modified 2026-06-17.