Vulnerabilities > CVE-2004-2175 - Unspecified vulnerability in ALL Enthusiast INC Reviewpost PHP PRO 2.5/2.5.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Multiple SQL injection vulnerabilities in ReviewPost PHP Pro allow remote attackers to execute arbitrary SQL commands via the (1) product parameter to showproduct.php or (2) cat parameter to showcat.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Exploit-Db
description All Enthusiast ReviewPost PHP Pro 2.5 showcat.php SQL Injection. CVE-2004-2175. Webapps exploit for php platform id EDB-ID:23646 last seen 2016-02-02 modified 2004-02-04 published 2004-02-04 reporter G00db0y source https://www.exploit-db.com/download/23646/ title All Enthusiast ReviewPost PHP Pro 2.5 showcat.php SQL Injection description All Enthusiast ReviewPost PHP Pro 2.5 showproduct.php SQL Injection. CVE-2004-2175. Webapps exploit for php platform id EDB-ID:23645 last seen 2016-02-02 modified 2004-02-04 published 2004-02-04 reporter G00db0y source https://www.exploit-db.com/download/23645/ title All Enthusiast ReviewPost PHP Pro 2.5 showproduct.php SQL Injection
Nessus
NASL family | CGI abuses |
NASL id | REVIEWPOST_SQL.NASL |
description | ReviewPost PHP Pro, a web-based software that manages user |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 12042 |
published | 2004-02-04 |
reporter | This script is Copyright (C) 2004-2018 Astharot |
source | https://www.tenable.com/plugins/nessus/12042 |
title | ReviewPost PHP Pro Multiple Script SQL Injections |
code |
|
References
- http://secunia.com/advisories/10786/
- http://secunia.com/advisories/10786/
- http://www.securityfocus.com/archive/1/352598
- http://www.securityfocus.com/archive/1/352598
- http://www.securityfocus.com/bid/9574
- http://www.securityfocus.com/bid/9574
- http://www.zone-h.org/en/advisories/read/id=3864/
- http://www.zone-h.org/en/advisories/read/id=3864/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15035
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15035