Vulnerability Description
Multiple SQL injection vulnerabilities in Doug Luxem Liberum Help Desk 0.97.3 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) view.asp or (2) print.asp or (3) edit parameter to register.asp.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Liberum | Liberum Help Desk | 0.97.3 |
References
- http://echo.or.id/adv/adv14-theday-2005.txtExploitVendor Advisory
- http://marc.info/?l=bugtraq&m=111773586701991&w=2
- http://secunia.com/advisories/15593
- http://echo.or.id/adv/adv14-theday-2005.txtExploitVendor Advisory
- http://marc.info/?l=bugtraq&m=111773586701991&w=2
- http://secunia.com/advisories/15593
FAQ
What is CVE-2005-1839?
CVE-2005-1839 is a vulnerability with a CVSS score of 7.5 (HIGH). Multiple SQL injection vulnerabilities in Doug Luxem Liberum Help Desk 0.97.3 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) view.asp or (2) print.asp or (3) edit...
How severe is CVE-2005-1839?
CVE-2005-1839 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-1839?
Check the references section above for vendor advisories and patch information. Affected products include: Liberum Liberum Help Desk.