CVE Database
/

CVE-2005-3996

Back to search

CVE-2005-3996

Published: Dec 5, 2005

Modified: Aug 7, 2024

PUBLISHED

Description

SQL injection vulnerability in admin/password_forgotten.php in Zen Cart 1.2.6d and earlier allows remote attackers to execute arbitrary SQL commands via the admin_email parameter.

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2005-2728
vdb-entry
x_refsource_VUPEN
17869
third-party-advisory
x_refsource_SECUNIA
forgotten-sql-injection(23510)
vdb-entry
x_refsource_XF
1015306
vdb-entry
x_refsource_SECTRACK
21411
vdb-entry
x_refsource_OSVDB
15690
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now