PT-2005-2093 · Radbids · Radbids Gold 2
Published
2005-04-12
·
Updated
2017-07-11
·
CVE-2005-1074
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
RadBids Gold 2
Description
A SQL injection issue exists in index.php, allowing remote attackers to execute arbitrary SQL commands via the
mode parameter.Recommendations
For RadBids Gold 2, consider restricting access to the vulnerable
index.php file until a patch is available, and avoid using the mode parameter in the affected API endpoint.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Radbids Gold 2