CVE Vulnerabilities

CVE-2005-3953

Published: Dec 01, 2005 | Modified: Oct 03, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in Bedeng PSP 1.1 allows remote attackers to execute arbitrary SQL commands via the cwhere parameter to (1) index.php and (2) download.php, or (3) ckode parameter to baca.php.

Affected Software

Name Vendor Start Version End Version
Bedeng_psp Bedeng_psp 1.1 (including) 1.1 (including)

References