PT-2005-2103 · Aedating · Aedating

Published

2005-04-12

·

Updated

2008-09-05

·

CVE-2005-1084

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions aeDating version 3.2
Description The issue allows remote attackers to execute arbitrary SQL commands via the event parameter in the sdating.php file.
Recommendations For aeDating version 3.2, consider restricting access to the sdating.php file or the event parameter to minimize the risk of exploitation until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-1084

Affected Products

Aedating