Vulnerabilities > CVE-2005-3555 - Unspecified vulnerability in Tincan PHPlist

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
tincan
exploit available

Summary

Multiple SQL injection vulnerabilities in PHPlist 2.10.1 and earlier allow authenticated remote attackers with administrator privileges to execute arbitrary SQL commands via the id parameter in the (1) editattributes or (2) admin page.

Exploit-Db

  • descriptionPHPList Mailing List Manager 2.x /admin/editattributes.php id Parameter SQL Injection. CVE-2005-3555. Webapps exploit for php platform
    idEDB-ID:26482
    last seen2016-02-03
    modified2005-11-07
    published2005-11-07
    reporterTobias Klein
    sourcehttps://www.exploit-db.com/download/26482/
    titlePHPList Mailing List Manager 2.x /admin/editattributes.php id Parameter SQL Injection
  • descriptionPHPList Mailing List Manager 2.x /admin/admin.php id Parameter SQL Injection. CVE-2005-3555. Webapps exploit for php platform
    idEDB-ID:26481
    last seen2016-02-03
    modified2005-11-07
    published2005-11-07
    reporterTobias Klein
    sourcehttps://www.exploit-db.com/download/26481/
    titlePHPList Mailing List Manager 2.x /admin/admin.php id Parameter SQL Injection