CVE-2005-3952

PHP Labs Top Auction - SQL Injection via Category or Type Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-3952. PoCs published by ajann.

AI-analyzed exploit summary This Perl script exploits a blind SQL injection vulnerability in Top Auction 1.0's viewcat.php by injecting a UNION-based query to extract admin credentials. It sends an HTTP request with a crafted payload to retrieve username and password from the users table.

Description

SQL injection vulnerability in PHP Labs Top Auction allows remote attackers to execute arbitrary SQL commands via the (1) category and (2) type parameters to viewcat.php, or (3) certain search parameters. NOTE: later a disclosure reported the affected version as 1.0.

Exploits (1)

exploitdb WORKING POC VERIFIED
by ajann · perlwebappsphp
https://www.exploit-db.com/exploits/3456

This Perl script exploits a blind SQL injection vulnerability in Top Auction 1.0's viewcat.php by injecting a UNION-based query to extract admin credentials. It sends an HTTP request with a crafted payload to retrieve username and password from the users table.

Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Top Auction 1.0
No auth needed
Prerequisites: Target must be running Top Auction 1.0 with vulnerable viewcat.php · Network access to the target web server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (9)

Core 9
Core References
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2005/2552
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/3456
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/15547
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/466565/100/200/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/21106
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/17687
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/21105
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/466569/100/200/threaded

Scores

EPSS 0.0252
EPSS Percentile 82.7%

Details

CWE
CWE-89
Status published
Products (1)
php_labs/top_auction 1.0
Published Dec 01, 2005
Tracked Since Feb 18, 2026