SQL Injection Vulnerability in Plague News System 0.6 and Earlier: Remote Code Execution via cid Parameter

SQL Injection Vulnerability in Plague News System 0.6 and Earlier: Remote Code Execution via cid Parameter

CVE-2005-2166 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:P/A:N

SQL injection vulnerability in index.php in Plague News System 0.6 and earlier allows remote attackers to execute arbitrary SQL commands via the cid parameter.

Learn more about our Web Application Penetration Testing UK.