CVE-2005-4769

Belchior Foundry vCard PRO 3.1 - SQL Injection

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-4769. PoCs published by almaster.

AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in vCard PRO, where the 'addr_id' parameter in 'addrbook.php' is not properly sanitized. This allows attackers to inject malicious SQL queries, potentially leading to data disclosure or modification.

Description

SQL injection vulnerability in addrbook.php in Belchior Foundry vCard PRO 3.1 allows remote attackers to execute arbitrary SQL commands via the addr_id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Exploits (1)

exploitdb WRITEUP VERIFIED
by almaster · textwebappsphp
https://www.exploit-db.com/exploits/26446

The provided text describes an SQL injection vulnerability in vCard PRO, where the 'addr_id' parameter in 'addrbook.php' is not properly sanitized. This allows attackers to inject malicious SQL queries, potentially leading to data disclosure or modification.

Classification
Writeup 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Theoretical
Target: vCard PRO
No auth needed
Prerequisites: Access to the vulnerable endpoint
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/15254

Scores

EPSS 0.0103
EPSS Percentile 59.1%

Details

Status published
Published Dec 31, 2005
Tracked Since Feb 18, 2026