Multiple SQL injection vulnerabilities in Sysbotz Systems Panel 1.0.6 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the cid parameter in knowledgebase/index.php, (2) the aid parameter in knowledgebase/view.php, (3) the cid parameter in contact/update.php, (4) the letter parameter in links/index.php, (5) the mid parameter in messageboard/view.php, and (6) the tid parameter in tickets/view.php.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2006-02-15T11:00:00

Updated: 2007-09-13T09:00:00

Reserved: 2006-02-15T00:00:00


Link: CVE-2005-4719

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2005-12-31T05:00:00.000

Modified: 2008-09-20T04:43:50.030


Link: CVE-2005-4719

JSON object: View

cve-icon Redhat Information

No data.