CVE-2005-1804

Net Portal Dynamic System 5.0 - SQL Injection via Glossaire Module or Links Query Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2005-1804. PoCs published by NoSP.

AI-analyzed exploit summary This exploit demonstrates a SQL injection vulnerability in NPDS by injecting a malicious query into the 'terme' parameter, allowing an attacker to extract usernames and passwords from the 'users' table. The vulnerability arises due to insufficient input validation in the 'glossaire' module.

Description

Multiple SQL injection vulnerabilities in Net Portal Dynamic System (NPDS) 5.0 allow remote attackers to execute arbitrary SQL commands via the (1) terme parameter in the glossaire module (glossaire.php) or (2) query parameter to links.php.

Exploits (2)

exploitdb WORKING POC VERIFIED
by NoSP · textwebappsphp
https://www.exploit-db.com/exploits/25748

This exploit demonstrates a SQL injection vulnerability in NPDS by injecting a malicious query into the 'terme' parameter, allowing an attacker to extract usernames and passwords from the 'users' table. The vulnerability arises due to insufficient input validation in the 'glossaire' module.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: NPDS (all versions)
No auth needed
Prerequisites: Access to the target NPDS application
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by NoSP · textwebappsphp
https://www.exploit-db.com/exploits/25749

This exploit demonstrates a SQL injection vulnerability in NPDS, allowing an attacker to extract user credentials (uname, pass) from the database and write them to a file on the server. The attack leverages a UNION-based SQL injection with INTO OUTFILE to exfiltrate data.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: NPDS (all versions)
No auth needed
Prerequisites: Target must have NPDS installed · Database user must have file write permissions
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Patch, Vendor Advisory vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1014073
Patch, Vendor Advisory x_refsource_confirm
http://www.npds.org/download.php?op=geninfo&did=115

Scores

EPSS 0.0108
EPSS Percentile 60.8%

Details

Status published
Products (1)
net_portal_dynamic_system/net_portal_dynamic_system 5.0
Published May 29, 2005
Tracked Since Feb 18, 2026