Vulnerabilities > CVE-2005-0929
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
SQL injection vulnerability in PhotoPost PHP Pro 5.x may allow remote attackers to execute arbitrary SQL commands via (1) the sl parameter to showmembers.php or (2) the photo parameter to showphoto.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description PhotoPost Pro 5.1 showphoto.php photo Parameter SQL Injection. CVE-2005-0929. Webapps exploit for php platform id EDB-ID:25312 last seen 2016-02-03 modified 2005-03-28 published 2005-03-28 reporter Diabolic Crab source https://www.exploit-db.com/download/25312/ title PhotoPost Pro 5.1 showphoto.php photo Parameter SQL Injection description PhotoPost PHP 4.6.5 (ecard.php) SQL Injection Vulnerability. CVE-2004-0239,CVE-2005-0929. Webapps exploit for php platform id EDB-ID:14453 last seen 2016-02-01 modified 2010-07-23 published 2010-07-23 reporter CoBRa_21 source https://www.exploit-db.com/download/14453/ title PhotoPost PHP 4.6.5 ecard.php SQL Injection Vulnerability description PhotoPost Pro 5.1 showmembers.php sl Parameter SQL Injection. CVE-2005-0929. Webapps exploit for php platform id EDB-ID:25311 last seen 2016-02-03 modified 2005-03-28 published 2005-03-28 reporter Diabolic Crab source https://www.exploit-db.com/download/25311/ title PhotoPost Pro 5.1 showmembers.php sl Parameter SQL Injection
Nessus
NASL family | CGI abuses |
NASL id | PHOTOPOST_MULTIPLE_INPUT_VULNS.NASL |
description | The version of PhotoPost PHP installed on the remote host is prone to multiple input validation vulnerabilities: o Multiple SQL Injection Vulnerabilities The application fails to properly sanitize user-input via the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 17649 |
published | 2005-03-30 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/17649 |
title | PhotoPost < 5.1 Multiple Input Validation Vulnerabilities |
code |
|