CVE-2005-3846 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in news.php in Fantastic News 2.1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter.
Reference
http://pridels0.blogspot.com/2005/11/fantastic-news-category-sql-inj.html http://secunia.com/advisories/17758 http://www.osvdb.org/21162 http://www.securityfocus.com/bid/15622 http://www.vupen.com/english/advisories/2005/2595 https://exchange.xforce.ibmcloud.com/vulnerabilities/23215
Share on: