CVE Database
/

CVE-2005-4016

Back to search

CVE-2005-4016

Published: Dec 5, 2005

Modified: Aug 7, 2024

PUBLISHED

Description

SQL injection vulnerability in Widget Property 1.1.19 allows remote attackers to execute arbitrary SQL commands via the (1) property_id, (2) zip_code, (3) property_type_id, (4) price, and (5) city_id parameters to property.php.

VendorProductVersions

n/a

n/a

affected
n/a

References

21426
vdb-entry
x_refsource_OSVDB
15701
vdb-entry
x_refsource_BID
ADV-2005-2741
vdb-entry
x_refsource_VUPEN
17829
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now