Vulnerability Description
SQL injection vulnerability in admin.asp in FunkyASP AD System 1.1 allows remote attackers to execute arbitrary SQL commands and gain privileges via the password parameter.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Funkyasp | Funkyasp Ad System | 1.1 |
References
- http://secunia.com/advisories/15494Vendor Advisory
- http://securitytracker.com/id?1014056
- http://www.funkyasp.co.uk/product.asp?prod=1¤cy=USDPatchVendor AdvisoryURL Repurposed
- http://www.under9round.com/funky-asp.txtExploitVendor AdvisoryURL Repurposed
- http://secunia.com/advisories/15494Vendor Advisory
- http://securitytracker.com/id?1014056
- http://www.funkyasp.co.uk/product.asp?prod=1¤cy=USDPatchVendor AdvisoryURL Repurposed
- http://www.under9round.com/funky-asp.txtExploitVendor AdvisoryURL Repurposed
FAQ
What is CVE-2005-1786?
CVE-2005-1786 is a vulnerability with a CVSS score of 7.5 (HIGH). SQL injection vulnerability in admin.asp in FunkyASP AD System 1.1 allows remote attackers to execute arbitrary SQL commands and gain privileges via the password parameter.
How severe is CVE-2005-1786?
CVE-2005-1786 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-1786?
Check the references section above for vendor advisories and patch information. Affected products include: Funkyasp Funkyasp Ad System.