PT-2005-2093 · Radbids · Radbids Gold 2

Published

2005-04-12

·

Updated

2017-07-11

·

CVE-2005-1074

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions RadBids Gold 2
Description A SQL injection issue exists in index.php, allowing remote attackers to execute arbitrary SQL commands via the mode parameter.
Recommendations For RadBids Gold 2, consider restricting access to the vulnerable index.php file until a patch is available, and avoid using the mode parameter in the affected API endpoint.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-1074

Affected Products

Radbids Gold 2