CVE Database
/

CVE-2005-3826

Back to search

CVE-2005-3826

Published: Nov 26, 2005

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple SQL injection vulnerabilities in Ezyhelpdesk 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) edit_id, (2) faq_id, and (3) c_id parameters in a query string, and (4) the search engine, possibly involving the search_string parameter.

VendorProductVersions

n/a

n/a

affected
n/a

References

21075
vdb-entry
x_refsource_OSVDB
21076
vdb-entry
x_refsource_OSVDB
ADV-2005-2560
vdb-entry
x_refsource_VUPEN
15553
vdb-entry
x_refsource_BID
17696
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now