CVE-2005-1029
N/A
N/A
Summary
Multiple SQL injection vulnerabilities in Active Auction House allow remote attackers to execute arbitrary SQL commands via the (1) catid, (2) SortDir, or (3) Sortby parameter to default.asp, (4) itemID parameter to ItemInfo.asp, or (5) Email field to sendpassword.asp.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.securityfocus.com/bid/13034
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19977
- http://www.osvdb.org/15283
- http://www.securitytracker.com/alerts/2005/Apr/1013649.html
- http://www.osvdb.org/15281
- http://www.securityfocus.com/bid/13032
- http://digitalparadox.org/advisories/aass.txt
- http://marc.info/?l=bugtraq&m=111280834000432&w=2
- http://www.securityfocus.com/bid/13035
- http://secunia.com/advisories/14839
- http://www.osvdb.org/15282
References
- http://www.securityfocus.com/bid/13034
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19977
- http://www.osvdb.org/15283
- http://www.securitytracker.com/alerts/2005/Apr/1013649.html
- http://www.osvdb.org/15281
- http://www.securityfocus.com/bid/13032
- http://digitalparadox.org/advisories/aass.txt
- http://marc.info/?l=bugtraq&m=111280834000432&w=2
- http://www.securityfocus.com/bid/13035
- http://secunia.com/advisories/14839
- http://www.osvdb.org/15282
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.