CVE Vulnerabilities

CVE-2005-4359

Published: Dec 20, 2005 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in includes/core.inc.php in ODFaq 2.1.0 allows remote attackers to execute arbitrary SQL commands via the (1) cat and (2) srcText parameters to faq.php.

Affected Software

Name Vendor Start Version End Version
Odfaq Oodie 1.21b (including) 1.21b (including)
Odfaq Oodie 2.1.0 (including) 2.1.0 (including)

References