CVE-2005-3939
Wsn Knowledge Base < 1.2.0 - SQL Injection
Title source: ruleDescription
Multiple SQL injection vulnerabilities in WSN Knowledge Base 1.2.0 and earler allow remote attackers to execute arbitrary SQL commands via the (1) catid, (2) perpage, (3) ascdesc, and (4) orderlinks in a displaycat action in (a) index.php; and the (5) id parameter in (b) comments.php and (c) memberlist.php.
Exploits (3)
References (6)
Scores
EPSS
0.0054
EPSS Percentile
67.3%
Classification
Status
draft
Affected Products (1)
wsn_knowledge_base/wsn_knowledge_base
< 1.2.0
Timeline
Published
Dec 01, 2005
Tracked Since
Feb 18, 2026