CVE-2005-3924 Information

Description

SQL injection vulnerability in themes/kategorie/index.php in Randshop allows remote attackers to execute arbitrary SQL commands via the (1) kategorieid and (2) katid parameters.

Reference

http://cert.uni-stuttgart.de/archive/bugtraq/2005/11/msg00333.html http://secunia.com/advisories/17782 http://securityreason.com/securityalert/213 http://www.blogcu.com/Liz0ziM/112800/ http://www.osvdb.org/21213 http://www.securityfocus.com/bid/15599 http://www.vupen.com/english/advisories/2005/2644

Share on: