CVE-2005-1875

Multiple SQL injection vulnerabilities in list.php in Exhibit Engine (EE) 1.22 allow remote attackers to execute arbitrary SQL commands via the (1) search_row, (2) sort_row, (3) order or (4) perpage parameter.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:exhibit_engine:exhibit_engine:1.22:*:*:*:*:*:*:*
cpe:2.3:a:exhibit_engine:exhibit_engine:1.54_rc4:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-06-02 04:00

Updated : 2024-02-04 16:52


NVD link : CVE-2005-1875

Mitre link : CVE-2005-1875

CVE.ORG link : CVE-2005-1875


JSON object : View

Products Affected

exhibit_engine

  • exhibit_engine