CVE-2005-0217: SQL Injection
Published Feb 6, 2005
·Updated
SQL injection vulnerability in index.php in Invision Community Blog allows remote attackers to execute arbitrary SQL commands via the eid parameter.
Affected Software
1 affected component
Invision Power Services Invision Community Blog=1.0
Event History
Feb 6, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0217?
CVE-2005-0217 is considered a critical severity vulnerability due to its potential for remote exploitation through SQL injection.
2
How do I fix CVE-2005-0217?
To fix CVE-2005-0217, you should update Invision Community Blog to a patched version that addresses the SQL injection vulnerability.
3
Who is affected by CVE-2005-0217?
CVE-2005-0217 affects users of Invision Community Blog version 1.0.
4
What type of vulnerability is CVE-2005-0217?
CVE-2005-0217 is an SQL injection vulnerability that allows attackers to execute arbitrary SQL commands.
5
What is the attack vector for CVE-2005-0217?
The attack vector for CVE-2005-0217 involves manipulating the 'eid' parameter in index.php to exploit the SQL injection.