First published: Sat Dec 17 2005(Updated: )
SQL injection vulnerability in index.php in AlmondSoft Almond Personals 4.05 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
AlmondSoft Almond Personals | =4.05 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-4313 has a high severity rating due to its potential for remote SQL command execution.
To fix CVE-2005-4313, validate and sanitize user input for the id parameter to prevent SQL injection.
CVE-2005-4313 affects AlmondSoft Almond Personals version 4.05.
CVE-2005-4313 is classified as an SQL injection vulnerability.
Yes, CVE-2005-4313 can allow attackers to execute arbitrary SQL commands, potentially leading to unauthorized access.