First published: Sun Feb 06 2005(Updated: )
SQL injection vulnerability in index.php in Invision Community Blog allows remote attackers to execute arbitrary SQL commands via the eid parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Invision Community | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-0217 is considered a critical severity vulnerability due to its potential for remote exploitation through SQL injection.
To fix CVE-2005-0217, you should update Invision Community Blog to a patched version that addresses the SQL injection vulnerability.
CVE-2005-0217 affects users of Invision Community Blog version 1.0.
CVE-2005-0217 is an SQL injection vulnerability that allows attackers to execute arbitrary SQL commands.
The attack vector for CVE-2005-0217 involves manipulating the 'eid' parameter in index.php to exploit the SQL injection.