Vulnerabilities > CVE-2005-3004 - SQL Injection vulnerability in Interakt MX Shop 3.2.0

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
interakt
exploit available

Summary

SQL injection vulnerability in Interakt MX Shop 3.2.0 allows remote attackers to execute arbitrary SQL commands via the (1) idp, (2) id_ctg, or (3) id_prd parameters to the pages module in index.php.

Vulnerable Configurations

Part Description Count
Application
Interakt
1

Exploit-Db

descriptionMX Shop 3.2 Index.PHP Multiple SQL Injection Vulnerabilities. CVE-2005-3004. Webapps exploit for php platform
idEDB-ID:26284
last seen2016-02-03
modified2005-09-19
published2005-09-19
reporterDavid Sopas Ferreira
sourcehttps://www.exploit-db.com/download/26284/
titleMX Shop 3.2 Index.PHP Multiple SQL Injection Vulnerabilities