CVE-2005-0781

SQL injection vulnerability in (1) viewall.php and (2) category.php in paFileDB 3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the start parameter to pafiledb.php.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:php_arena:pafiledb:1.1.3:*:*:*:*:*:*:*
cpe:2.3:a:php_arena:pafiledb:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:php_arena:pafiledb:3.0:*:*:*:*:*:*:*
cpe:2.3:a:php_arena:pafiledb:3.0_beta_3.1:*:*:*:*:*:*:*
cpe:2.3:a:php_arena:pafiledb:3.1:*:*:*:*:*:*:*

History

20 Nov 2024, 23:55

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=111065796525043&w=2 - () http://marc.info/?l=bugtraq&m=111065796525043&w=2 -
References () http://www.securityfocus.com/bid/12788 - Exploit () http://www.securityfocus.com/bid/12788 - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/19688 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/19688 -

Information

Published : 2005-05-02 04:00

Updated : 2024-11-20 23:55


NVD link : CVE-2005-0781

Mitre link : CVE-2005-0781

CVE.ORG link : CVE-2005-0781


JSON object : View

Products Affected

php_arena

  • pafiledb