Arbitrary SQL Command Execution in PHP Download Manager 1.1.3 and Earlier

Arbitrary SQL Command Execution in PHP Download Manager 1.1.3 and Earlier

CVE-2005-3769 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

SQL injection vulnerability in files.php in PHP Download Manager 1.1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter.

Learn more about our Web Application Penetration Testing UK.