CVE-2005-1196: SQL Injection
Published Apr 21, 2005
·Updated
SQL injection vulnerability in kb.php in the Knowledge Base module for phpBB allows remote attackers to obtain sensitive information and execute SQL commands via the cat parameter.
Affected Software
1 affected component
Phpbb Group Phpbb
Event History
Apr 21, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1196?
CVE-2005-1196 is considered a moderate severity SQL injection vulnerability.
2
How do I fix CVE-2005-1196?
To fix CVE-2005-1196, update your phpBB installation to the latest version that has removed this vulnerability.
3
What systems are affected by CVE-2005-1196?
CVE-2005-1196 affects the Knowledge Base module in phpBB versions prior to the fix.
4
What type of vulnerability is CVE-2005-1196?
CVE-2005-1196 is an SQL injection vulnerability that can lead to unauthorized SQL command execution.
5
How can CVE-2005-1196 impact a website?
CVE-2005-1196 can allow attackers to gain sensitive information and manipulate the database of affected websites.