Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2005-2323
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-2323

Description:
Multiple SQL injection vulnerabilities in Class-1 Forum 0.24.4 and 0.23.2, and Clever Copy with forums installed, allow remote attackers to modify SQL statements via the (1) id parameter to viewattach.php, (2) viewuser_id parameter to users.php, or the (3) id or (4) forum parameter to viewforum.php.

CVE Status:
Candidate

References:

ST
  1014485
  1014486

SAID
  Secunia Advisory: SA16078

OSVDB
  17923
  17921
  17922

MISC
  http://lostmon.blogspot.com/2005/07/class-1-forum-software-cross-site.html


Return to the previous page.