Vulnerability Description
PHP Surveyor 0.98 allows remote attackers to trigger SQL errors via missing parameters to (1) browse.php, (2) export.php, (3) conditions.php, or (4) spss.php.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Php Surveyor | Php Surveyor | 0.98 |
References
- http://marc.info/?l=bugtraq&m=112188282401681&w=2
- http://secunia.com/advisories/16123Vendor Advisory
- http://securitytracker.com/id?1014538
- http://www.securityfocus.com/bid/14331
- http://marc.info/?l=bugtraq&m=112188282401681&w=2
- http://secunia.com/advisories/16123Vendor Advisory
- http://securitytracker.com/id?1014538
- http://www.securityfocus.com/bid/14331
FAQ
What is CVE-2005-2399?
CVE-2005-2399 is a vulnerability with a CVSS score of 7.5 (HIGH). PHP Surveyor 0.98 allows remote attackers to trigger SQL errors via missing parameters to (1) browse.php, (2) export.php, (3) conditions.php, or (4) spss.php.
How severe is CVE-2005-2399?
CVE-2005-2399 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-2399?
Check the references section above for vendor advisories and patch information. Affected products include: Php Surveyor Php Surveyor.