CVE-2005-2037 Information

Description

Multiple SQL injection vulnerabilities in Fortibus CMS 4.0.0 allow remote attackers to execute arbitrary SQL commands via (1) the username or password to logon.asp (2) WeeklyNotesDisplay.asp or (3) the Search page.

Reference

http://secunia.com/advisories/15762 http://securitytracker.com/id?1014242 http://www.vupen.com/english/advisories/2005/0827

Share on: