SQL injection vulnerability in Softbiz FAQ Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the id parameter in (1) index.php, (2) faq_qanda.php, (3) refer_friend.php, (4) print_article.php, or (5) add_comment.php.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2005-12-01T11:00:00
Updated: 2005-12-08T10:00:00
Reserved: 2005-12-01T00:00:00
Link: CVE-2005-3938
JSON object: View
NVD Information
Status : Analyzed
Published: 2005-12-01T06:03:00.000
Modified: 2009-10-09T04:33:16.797
Link: CVE-2005-3938
JSON object: View
Redhat Information
No data.
CWE