CVE-2005-1412

Ecomm Professional Guestbook <3.x - SQL Injection

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in verify.asp for Ecomm Professional Guestbook 3.x allows remote attackers to execute arbitrary SQL commands via the AdminPWD parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by c0d3r · textwebappsasp
https://www.exploit-db.com/exploits/25466

References (2)

Core 2
Core References
Vendor Advisory vdb-entry x_refsource_osvdb
http://www.osvdb.org/15967
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/15190

Scores

EPSS 0.0088
EPSS Percentile 75.4%

Details

Status published
Products (1)
ecomm/professional_guestbook 3
Published May 03, 2005
Tracked Since Feb 18, 2026