CVE Vulnerabilities

CVE-2005-3980

Published: Dec 04, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

SQL injection vulnerability in the ticket query module in Edgewall Trac 0.9 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the group parameter.

Affected Software

NameVendorStart VersionEnd Version
TracEdgewall_software0.5.1 (including)0.5.1 (including)
TracEdgewall_software0.5.2 (including)0.5.2 (including)
TracEdgewall_software0.6 (including)0.6 (including)
TracEdgewall_software0.6.1 (including)0.6.1 (including)
TracEdgewall_software0.7 (including)0.7 (including)
TracEdgewall_software0.7.1 (including)0.7.1 (including)
TracEdgewall_software0.8 (including)0.8 (including)
TracEdgewall_software0.8.1 (including)0.8.1 (including)
TracEdgewall_software0.8.2 (including)0.8.2 (including)
TracEdgewall_software0.8.3 (including)0.8.3 (including)
TracEdgewall_software0.8.4 (including)0.8.4 (including)
TracEdgewall_software0.9 (including)0.9 (including)
TracEdgewall_software0.9b1 (including)0.9b1 (including)
TracEdgewall_software0.9b2 (including)0.9b2 (including)
TracEdgewall_software0.50.9 (including)0.50.9 (including)

References