CVE Vulnerabilities

CVE-2005-3833

Published: Nov 26, 2005 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in songinfo.php in Tunez 1.21 and earlier allows remote attackers to execute arbitrary SQL commands via the song_id parameter.

Affected Software

Name Vendor Start Version End Version
Tunez Tunez 0.1 (including) 0.1 (including)
Tunez Tunez 0.2 (including) 0.2 (including)
Tunez Tunez 0.3 (including) 0.3 (including)
Tunez Tunez 0.4 (including) 0.4 (including)
Tunez Tunez 0.5 (including) 0.5 (including)
Tunez Tunez 0.5.5 (including) 0.5.5 (including)
Tunez Tunez 0.7 (including) 0.7 (including)
Tunez Tunez 0.9 (including) 0.9 (including)
Tunez Tunez 1.0.0 (including) 1.0.0 (including)
Tunez Tunez 1.1 (including) 1.1 (including)
Tunez Tunez 1.15 (including) 1.15 (including)
Tunez Tunez 1.20 (including) 1.20 (including)
Tunez Tunez 1.21 (including) 1.21 (including)

References