First published: Thu Apr 21 2005(Updated: )
Multiple SQL injection vulnerabilities in index.php in eGroupware before 1.0.0.007 allow remote attackers to execute arbitrary SQL commands via the (1) filter or (2) cats_app parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Allegro | =1.0 | |
Allegro | =1.0.1 | |
Allegro | =1.0.3 | |
Allegro | =1.0.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1203 is considered a medium severity vulnerability due to the potential for remote SQL command execution.
To fix CVE-2005-1203, update eGroupware to version 1.0.0.007 or later.
CVE-2005-1203 affects eGroupware versions prior to 1.0.0.007, including 1.0, 1.0.1, 1.0.3, and 1.0.6.
Yes, CVE-2005-1203 can be exploited remotely by attackers to execute arbitrary SQL commands.
CVE-2005-1203 is a SQL injection vulnerability that allows attackers to manipulate database queries.