Multiple SQL injection vulnerabilities in CategoryResults.cfm in Honeycomb Archive and Honeycomb Archive Enterprise 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) series, (2) cat_parent, (3) cat, and (4) div parameters.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:04
Type | Values Removed | Values Added |
---|---|---|
References | () http://pridels0.blogspot.com/2005/12/honeycomb-archive-honeycomb-archive.html - | |
References | () http://secunia.com/advisories/18127 - | |
References | () http://www.attrition.org/pipermail/vim/2006-March/000580.html - | |
References | () http://www.osvdb.org/21827 - | |
References | () http://www.securityfocus.com/bid/15995 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/23829 - |
Information
Published : 2005-12-20 11:03
Updated : 2025-04-03 01:03
NVD link : CVE-2005-4419
Mitre link : CVE-2005-4419
CVE.ORG link : CVE-2005-4419
JSON object : View
Products Affected
quicksquare_development
- honeycomb_archive
- honeycomb_archive_enterprise
CWE