CVE-2005-1805

Online Solutions For Educators - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in login.asp in an unknown product by Online Solutions for Educators (OS4E) allows remote attackers to execute arbitrary SQL commands via the password.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Dj romty · textwebappsasp
https://www.exploit-db.com/exploits/25751

References (4)

Core 4
Core References
Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/13804
Vendor Advisory vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1014072
Vendor Advisory, URL Repurposed x_refsource_misc
http://www.under9round.com/os4e.txt
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2005/0645

Scores

EPSS 0.0106
EPSS Percentile 77.7%

Details

Status published
Products (1)
online_solutions_for_educators/online_solutions_for_educators
Published May 28, 2005
Tracked Since Feb 18, 2026