7.5
CVSSv2

CVE-2005-1805

Published: 28/05/2005 Updated: 14/02/2024
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in login.asp in an unknown product by Online Solutions for Educators (OS4E) allows remote malicious users to execute arbitrary SQL commands via the password.

Vulnerable Product Search on Vulmon Subscribe to Product

online solutions for educators online solutions for educators

Exploits

source: wwwsecurityfocuscom/bid/13804/info os4e is prone to an SQL injection vulnerability This issue is due to a failure in the application to properly sanitize user-supplied input to the 'loginasp' script before using it in an SQL query Successful exploitation could result in a compromise of the application, disclosure or modificat ...