CVE-2005-3937
N/A
N/A
Summary
SQL injection vulnerability in Softbiz B2B Trading Marketplace Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the cid parameter in (1) selloffers.php, (2) buyoffers.php, (3) products.php, or (4) profiles.php.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.osvdb.org/21254
- http://www.securityfocus.com/bid/15652
- http://www.osvdb.org/21252
- http://secunia.com/advisories/17808
- http://pridels0.blogspot.com/2005/11/softbiz-b2b-trading-marketplace-script.html
- http://www.osvdb.org/21255
- http://www.osvdb.org/21253
References
- http://www.osvdb.org/21254
- http://www.securityfocus.com/bid/15652
- http://www.osvdb.org/21252
- http://secunia.com/advisories/17808
- http://pridels0.blogspot.com/2005/11/softbiz-b2b-trading-marketplace-script.html
- http://www.osvdb.org/21255
- http://www.osvdb.org/21253
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.