phpMyFAQ Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2005-3046 - Vulnerability Database
phpMyFAQ Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2005-3046
Medium
Reference:
CVE-2005-3046
Title:
phpMyFAQ Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:
SQL injection vulnerability in password.php in PhpMyFaq 1.5.1 allows remote attackers to modify SQL queries and gain administrator privileges via the user field.