Security Advisory

CVE-2005-0946

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2005-04-03 05:00:00
Last updated 2024-08-07 21:28:28
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SQL injection vulnerability in phpCoin 1.2.1b and earlier allows remote attackers to execute arbitrary SQL commands via the (1) term/keywords field on the search page, (2) username or (3) e-mail field on the forgot password page, or (4) domain name on the ordering new package page.