Multiple SQL injection vulnerabilities in CMScore allow remote attackers to execute arbitrary SQL commands via the (1) EntryID or (2) searchterm parameter to index.php, or (3) username parameter to authenticate.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-02-11T05:00:00

Updated: 2024-08-07T21:13:53.468Z

Reserved: 2005-02-11T00:00:00

Link: CVE-2005-0368

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2005-05-02T04:00:00.000

Modified: 2017-07-11T01:32:15.610

Link: CVE-2005-0368

cve-icon Redhat

No data.