CVE Vulnerabilities

CVE-2005-4619

Published: Dec 31, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

SQL injection vulnerability in index.php in phpoutsourcing Zorum Forum 3.5 and earlier allows remote attackers to execute arbitrary SQL commands via the rollid parameter in the showhtmllist method.

Affected Software

NameVendorStart VersionEnd Version
ZorumPhpoutsourcing3.0 (including)3.0 (including)
ZorumPhpoutsourcing3.1 (including)3.1 (including)
ZorumPhpoutsourcing3.2 (including)3.2 (including)
ZorumPhpoutsourcing3.3 (including)3.3 (including)
ZorumPhpoutsourcing3.4 (including)3.4 (including)
ZorumPhpoutsourcing3.5 (including)3.5 (including)

References