CVE-2005-2432: SQL Injection
Published Aug 3, 2005
·Updated
SQL injection vulnerability in PhpList allows remote attackers to modify SQL statements via the id argument to admin pages such as (1) members or (2) admin.
Affected Software
1 affected component
Tincan Phplist
Event History
Aug 3, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2432?
The severity of CVE-2005-2432 is classified as high due to its potential for SQL injection attacks.
2
How do I fix CVE-2005-2432?
To fix CVE-2005-2432, you should update PhpList to the latest version that addresses this vulnerability.
3
Which versions of PhpList are affected by CVE-2005-2432?
CVE-2005-2432 affects various versions of PhpList prior to the patched release.
4
What type of vulnerability is CVE-2005-2432?
CVE-2005-2432 is an SQL injection vulnerability that allows remote attackers to manipulate database queries.
5
Who can be impacted by CVE-2005-2432?
Users running vulnerable versions of PhpList are at risk of data exposure or modification due to CVE-2005-2432.