Vulnerabilities > CVE-2005-4370 - Input Validation vulnerability in Acidcat CMS

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
acidcat
exploit available

Summary

SQL injection vulnerability in main_content.asp in Acidcat 2.1.13 and earlier allows remote attackers to execute arbitrary SQL commands via the ID parameter to default.asp.

Vulnerable Configurations

Part Description Count
Application
Acidcat
3

Exploit-Db

descriptionAcidcat CMS 2.1.13 default.asp ID Parameter SQL Injection. CVE-2005-4370 . Webapps exploit for asp platform
idEDB-ID:26873
last seen2016-02-03
modified2005-12-19
published2005-12-19
reporter[email protected]
sourcehttps://www.exploit-db.com/download/26873/
titleAcidcat CMS 2.1.13 default.asp ID Parameter SQL Injection