Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-3158
Description:SQL injection vulnerability in messages.php in PHP-Fusion 6.00.106 and 6.00.107 allows remote attackers to execute arbitrary SQL commands via the (1) pm_email_notify and (2) pm_save_sent parameters, a different vulnerability than CVE-2005-3157 and CVE-2005-3159.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-3158
Bugtraq: 20050929 Re: PHP-Fusion v6.00.109 SQL Injection / admin|users credentials (Google Search)
http://marc.info/?l=bugtraq&m=112801702000944&w=2
http://www.gnucitizen.org/writings/php-fusion-messages.php-sql-injection-vulnerability.xhtml




© 1998-2025 E-Soft Inc. All rights reserved.