CVE-2017-15992: Website Broker Script Project Website Broker Script

Critical severity, CVSS 9.8. EPSS: 2.7% chance of exploitation in the next 30 days.

Website Broker Script allows SQL Injection via the 'status_id' Parameter to status_list.php.

Affected products

Published 2017-10-31. Last modified 2026-06-17.