CVE Vulnerabilities

CVE-2005-0271

Published: Jan 03, 2005 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Multiple SQL injection vulnerabilities in ReviewPost PHP Pro before 2.84 allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to showcat.php or (2) product parameter to addfav.php.

Affected Software

Name Vendor Start Version End Version
Reviewpost_php_pro Photopost * 2.5.1 (including)
Reviewpost_php_pro Photopost 1.0.2 (including) 1.0.2 (including)
Reviewpost_php_pro Photopost 2.5 (including) 2.5 (including)

References