SQL Injection Vulnerability in Interchange by ICESoft
CVE-2005-3072

Currently unrated

Key Information:

Vendor
CVE Published:
27 September 2005

What is CVE-2005-3072?

The SQL injection vulnerability in Interchange versions 4.9.3 through 5.2.0 is found in the 'pages/forum/submit.html' component. This flaw allows remote attackers to send crafted SQL statements to the database, leading to unauthorized database access and manipulation. Exploitation of this vulnerability can result in the execution of arbitrary SQL commands, posing a significant risk to data integrity and confidentiality.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.