CVE-2005-1413

Multiple SQL injection vulnerabilities in enVivo!CMS allow remote attackers to execute arbitrary SQL commands and gain privileges via the (1) username or (2) password parameters to admin_login.asp, or the (3) searchstring and possibly (4) ID parameters to default.asp.
Configurations

Configuration 1 (hide)

cpe:2.3:a:envivosoft:envivo_cms:3.54:*:*:*:*:*:*:*

History

20 Nov 2024, 23:57

Type Values Removed Values Added
References () http://digitalparadox.org/viewadvisories.ah?view=37 - Exploit () http://digitalparadox.org/viewadvisories.ah?view=37 - Exploit
References () http://marc.info/?l=full-disclosure&m=118414271202945&w=2 - () http://marc.info/?l=full-disclosure&m=118414271202945&w=2 -
References () http://secunia.com/advisories/15173 - () http://secunia.com/advisories/15173 -
References () http://securitytracker.com/id?1013843 - Exploit () http://securitytracker.com/id?1013843 - Exploit
References () http://securityvulns.ru/Rdocument425.html - () http://securityvulns.ru/Rdocument425.html -
References () http://www.osvdb.org/15964 - () http://www.osvdb.org/15964 -
References () http://www.osvdb.org/15965 - () http://www.osvdb.org/15965 -
References () http://www.osvdb.org/15966 - () http://www.osvdb.org/15966 -
References () http://www.securityfocus.com/bid/13437 - () http://www.securityfocus.com/bid/13437 -
References () http://www.securityfocus.com/bid/13439 - () http://www.securityfocus.com/bid/13439 -
References () http://www.securityfocus.com/bid/13440 - () http://www.securityfocus.com/bid/13440 -
References () http://www.securityfocus.com/bid/24860 - () http://www.securityfocus.com/bid/24860 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/20313 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/20313 -

Information

Published : 2005-05-03 04:00

Updated : 2024-11-20 23:57


NVD link : CVE-2005-1413

Mitre link : CVE-2005-1413

CVE.ORG link : CVE-2005-1413


JSON object : View

Products Affected

envivosoft

  • envivo_cms