CVE-2005-3844
phpWordPress PHP News and Article Manager 3.0 - SQL Injection via Poll, Category, or Archive Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-3844. PoCs published by r0t.
AI-analyzed exploit summary The provided text describes SQL injection vulnerabilities in PHPWordPress up to version 3.0, detailing vulnerable parameters ('poll', 'category', 'ctg') without actual exploit code. It references a SecurityFocus BID but lacks executable PoC.
Description
SQL injection vulnerability in phpWordPress PHP News and Article Manager 3.0 allows remote attackers to execute arbitrary SQL commands via the (1) poll and (2) category parameters to index.php, and (3) the ctg parameter in an archive action.
Exploits (1)
The provided text describes SQL injection vulnerabilities in PHPWordPress up to version 3.0, detailing vulnerable parameters ('poll', 'category', 'ctg') without actual exploit code. It references a SecurityFocus BID but lacks executable PoC.