** DISPUTED ** SQL injection vulnerability in index.php in Jamit Job Board 2.4.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter. NOTE: the vendor has disputed this issue, saying "The vulnerability is without any basis and did not actually work." CVE has not verified either the vendor or researcher statements, but the original researcher is known to make frequent mistakes when reporting SQL injection.
References
Configurations
History
No history.
Information
Published : 2005-12-14 11:03
Updated : 2024-08-08 00:15
NVD link : CVE-2005-4232
Mitre link : CVE-2005-4232
CVE.ORG link : CVE-2005-4232
JSON object : View
Products Affected
jamit
- jamit_job_board
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')