CVE-2005-0841
Last modified
CVE-2005-0841 is a vulnerability of currently unknown severity. SQL injection vulnerability in (1) people.php, (2) track.php, (3) edit.php, (4) document.php, (5) census.php, (6) passthru.php and possibly other php files in phpMyFamily 1.4.0 allows remote attackers to execute arbitrary SQL commands, as demonstrated via (1) the person parameter to people.php or (2) the Login field.. EPSS estimates a 1.23% chance of exploitation in the next 30 days.
Description
SQL injection vulnerability in (1) people.php, (2) track.php, (3) edit.php, (4) document.php, (5) census.php, (6) passthru.php and possibly other php files in phpMyFamily 1.4.0 allows remote attackers to execute arbitrary SQL commands, as demonstrated via (1) the person parameter to people.php or (2) the Login field.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Phpmyfamily | Phpmyfamily | 1.4 |
References
- http://secunia.com/advisories/14642Patch, Vendor Advisory
- http://secunia.com/advisories/14642Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-0841?
How severe is CVE-2005-0841?
How do I fix CVE-2005-0841?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-0835The SNMP service in the Belkin 54G (F5D7130) wireless router…
- CVE-2005-0836Argument injection vulnerability in Java Web Start for J2SE …
- CVE-2005-0837IceCast 2.20 allows remote attackers to bypass the XSL parse…
- CVE-2005-0838Multiple buffer overflows in the XSL parser for IceCast 2.20…
- CVE-2005-0839Linux kernel 2.6 before 2.6.11 does not restrict access to t…
- CVE-2005-0840Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2005-0842Cross-site scripting (XSS) vulnerability in index.php in Kay…
- CVE-2005-0843CRLF injection vulnerability in search.php in Phorum 5.0.14a…
- CVE-2005-0844Nortel VPN client 5.01 stores the cleartext password in the …
- CVE-2005-0845Directory traversal vulnerability in the Webmail interface i…
- CVE-2005-0846Multiple cross-site scripting (XSS) vulnerabilities in the e…
- CVE-2005-0847Code Ocean FTP server 1.0 allows remote attackers to cause a…
Are you affected by CVE-2005-0841?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
