CVE-2005-4071 Information
Feb 14, 2021
cve
Description
Multiple SQL injection vulnerabilities in CFMagic Magic Forum Personal 2.5 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ForumID parameter in view_forum.cfm and (2) ForumID (3) Thread and (4) ThreadID parameters in view_thread.cfm.
Reference
http://pridels0.blogspot.com/2005/12/magic-forum-personal-sqlxss-vuln.html http://secunia.com/advisories/17935 http://www.osvdb.org/21501 http://www.osvdb.org/21502 http://www.securityfocus.com/bid/15774 http://www.vupen.com/english/advisories/2005/2794 https://exchange.xforce.ibmcloud.com/vulnerabilities/23514
Share on: