Vulnerabilities > CVE-2005-0890 - SQL Injection vulnerability in Dream4 Koobi CMS 4.2.3

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
dream4
exploit available

Summary

SQL injection vulnerability in Dream4 Koobi CMS 4.2.3 allows remote attackers to execute arbitrary SQL commands via the area parameter.

Vulnerable Configurations

Part Description Count
Application
Dream4
1

Exploit-Db

  • descriptionDream4 Koobi CMS 4.2.3 Index.PHP SQL Injection Vulnerability. CVE-2005-0890. Webapps exploit for php platform
    idEDB-ID:25273
    last seen2016-02-03
    modified2005-03-24
    published2005-03-24
    reportermircia
    sourcehttps://www.exploit-db.com/download/25273/
    titleDream4 Koobi CMS 4.2.3 Index.PHP SQL Injection Vulnerability
  • descriptionDream4 Koobi CMS 4.2.3 Index.PHP Q Parameter SQL Injection Vulnerability. CVE-2005-0890 . Webapps exploit for php platform
    idEDB-ID:25556
    last seen2016-02-03
    modified2005-04-27
    published2005-04-27
    reporterCENSORED Search Vulnerabilities
    sourcehttps://www.exploit-db.com/download/25556/
    titleDream4 Koobi CMS 4.2.3 Index.PHP Q Parameter SQL Injection Vulnerability
  • descriptionDream4 Koobi CMS 4.2.3 Index.PHP P Parameter SQL Injection Vulnerability. CVE-2005-0890. Webapps exploit for php platform
    idEDB-ID:25555
    last seen2016-02-03
    modified2005-04-27
    published2005-04-27
    reporterCENSORED Search Vulnerabilities
    sourcehttps://www.exploit-db.com/download/25555/
    titleDream4 Koobi CMS 4.2.3 Index.PHP P Parameter SQL Injection Vulnerability