CVE-2005-3497 Information
Description
LICENSE README.md cvefilelist cvelist nvdcve nvdpages.sh scripts test-CVE-2017-1882.markdown test-CVE-2017-18822.markdown tmpvendorlinks DISPUTED LICENSE README.md cvefilelist cvelist nvdcve nvdpages.sh scripts test-CVE-2017-1882.markdown test-CVE-2017-18822.markdown tmpvendorlinks SQL injection vulnerability in process_signup.php in PHP Handicapper allows remote attackers to execute arbitrary SQL commands via the serviceid parameter. NOTE: on 20060210 the vendor disputed this issue saying \this is 100 false reporting this is a slander campaign from a customer who had a vulnerability in his SERVER not the software.\ However followup investigation strongly suggests that the original report is correct.
Reference
http://secunia.com/advisories/17412 http://www.osvdb.org/20481 http://www.securityfocus.com/bid/15298 http://www.vupen.com/english/advisories/2005/2292 http://www.zone-h.org/advisories/read/id=8360
Share on: