CVE-2005-2838: SQL Injection
Published Sep 7, 2005
·Updated
SQL injection vulnerability in login.php in myBloggie 2.1.3-beta and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter.
Affected Software
3 affected components
myWebland myBloggie=2.1.1
myWebland myBloggie=2.1.2
myWebland myBloggie=2.1.3_beta
Remediation
Patch Available
Patch Available
Event History
Sep 7, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2838?
CVE-2005-2838 has a high severity rating due to its potential for remote SQL injection attacks.
2
How do I fix CVE-2005-2838?
To fix CVE-2005-2838, upgrade myBloggie to version 2.1.4 or later where the vulnerability is patched.
3
What systems are affected by CVE-2005-2838?
CVE-2005-2838 affects myBloggie versions 2.1.1, 2.1.2, and 2.1.3-beta.
4
What type of vulnerability is CVE-2005-2838?
CVE-2005-2838 is classified as an SQL injection vulnerability.
5
Can CVE-2005-2838 lead to data breach?
Yes, CVE-2005-2838 can lead to unauthorized access and data breaches due to arbitrary SQL command execution.