Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-0475

SQL injection vulnerability in paFAQ Beta4, and possibly other versions, allows remote attackers to execute arbitrary SQL code via the (1) offset, (2) limit, (3) order, or (4) orderby parameter to question.php, (5) offset parameter to answer.php, (6) search_item parameter to search.php, (7) cat_id, (8) cid, or (9) id parameter to comment.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 55.4%
CVSS Severity
CVSS v2 Score 6.4
Products affected by CVE-2005-0475
  • Php Arena » Pafaq » Version: beta4
    cpe:2.3:a:php_arena:pafaq:beta4


Contact Us

Shodan ® - All rights reserved