CVE-2005-3937
Last modified
CVE-2005-3937 is a vulnerability of currently unknown severity. SQL injection vulnerability in Softbiz B2B Trading Marketplace Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the cid parameter in (1) selloffers.php, (2) buyoffers.php, (3) products.php, or (4) profiles.php.. EPSS estimates a 1.35% chance of exploitation in the next 30 days.
Description
SQL injection vulnerability in Softbiz B2B Trading Marketplace Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the cid parameter in (1) selloffers.php, (2) buyoffers.php, (3) products.php, or (4) profiles.php.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Softbizscripts | B2b Trading Marketplace Script | <= 1.1 |
References
- http://secunia.com/advisories/17808Third Party Advisory
- http://www.osvdb.org/21252Broken Link
- http://www.osvdb.org/21253Broken Link
- http://www.osvdb.org/21254Broken Link
- http://www.osvdb.org/21255Broken Link
- http://www.securityfocus.com/bid/15652Broken Link
- http://secunia.com/advisories/17808Third Party Advisory
- http://www.osvdb.org/21252Broken Link
- http://www.osvdb.org/21253Broken Link
- http://www.osvdb.org/21254Broken Link
- http://www.osvdb.org/21255Broken Link
- http://www.securityfocus.com/bid/15652Broken Link
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2005-3937?
How severe is CVE-2005-3937?
How do I fix CVE-2005-3937?
Are you affected by CVE-2005-3937?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
