Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-3968

SQL injection vulnerability in auth.inc.php in PHPX 3.5.9 and earlier allows remote attackers to execute arbitrary SQL commands, bypass authentication, and upload arbitrary PHP code via the username parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.031
EPSS Ranking 86.1%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2005-3968
  • Phpx » Phpx » Version: 3.5
    cpe:2.3:a:phpx:phpx:3.5
  • Phpx » Phpx » Version: 3.5.1
    cpe:2.3:a:phpx:phpx:3.5.1
  • Phpx » Phpx » Version: 3.5.2
    cpe:2.3:a:phpx:phpx:3.5.2
  • Phpx » Phpx » Version: 3.5.3
    cpe:2.3:a:phpx:phpx:3.5.3
  • Phpx » Phpx » Version: 3.5.4
    cpe:2.3:a:phpx:phpx:3.5.4
  • Phpx » Phpx » Version: 3.5.5
    cpe:2.3:a:phpx:phpx:3.5.5
  • Phpx » Phpx » Version: 3.5.6
    cpe:2.3:a:phpx:phpx:3.5.6
  • Phpx » Phpx » Version: 3.5.7
    cpe:2.3:a:phpx:phpx:3.5.7
  • Phpx » Phpx » Version: 3.5.8
    cpe:2.3:a:phpx:phpx:3.5.8
  • Phpx » Phpx » Version: 3.5.9
    cpe:2.3:a:phpx:phpx:3.5.9


Contact Us

Shodan ® - All rights reserved