CVE-2005-3864
Last modified
CVE-2005-3864 is a vulnerability of currently unknown severity. SQL injection vulnerability in index.php in SourceWell 1.1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the cnt parameter. NOTE: various reports indicate that the affected version is 1.1.3, but as of 2005-11-29, the most recent version appears to be 1.1.2.. EPSS estimates a 1.12% chance of exploitation in the next 30 days.
Description
SQL injection vulnerability in index.php in SourceWell 1.1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the cnt parameter. NOTE: various reports indicate that the affected version is 1.1.3, but as of 2005-11-29, the most recent version appears to be 1.1.2.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Berlios | Sourcewell | <= 1.1.2 |
References
- http://secunia.com/advisories/17673Vendor Advisory
- http://secunia.com/advisories/17673Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-3864?
How severe is CVE-2005-3864?
How do I fix CVE-2005-3864?
Are you affected by CVE-2005-3864?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
