CVE-2005-4781

SergiDs Top Music module <3.0 PR3 - SQL Injection

Title source: llm

Description

Multiple SQL injection vulnerabilities in SergiDs Top Music module 3.0 PR3 and earlier for PHP-Nuke allow remote attackers to execute arbitrary SQL commands via the (1) idartist, (2) idsong, and (3) idalbum parameters to modules.php.

Exploits (1)

exploitdb WRITEUP VERIFIED
by r0t · textwebappsphp
https://www.exploit-db.com/exploits/26607

Scores

EPSS 0.0034
EPSS Percentile 56.4%

Classification

Status draft

Affected Products (1)

sergids/top_music_module

Timeline

Published Dec 31, 2005
Tracked Since Feb 18, 2026