7.5
CVSSv2

CVE-2005-2432

Published: 03/08/2005 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in PhpList allows remote malicious users to modify SQL statements via the id argument to admin pages such as (1) members or (2) admin.

Vulnerable Product Search on Vulmon Subscribe to Product

tincan phplist

Exploits

source: wwwsecurityfocuscom/bid/14403/info PHPList is prone to an SQL injection vulnerability This issue is due to a failure in the application to properly sanitize user-supplied data before using it in an SQL query Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permi ...