Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2005-1777

4 documents4 sources
Severity
7.5HIGH
EPSS
0.3%
top 42.58%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedMay 31
Latest updateMay 1

Description

SQL injection vulnerability in readpmsg.php in PostNuke 0.750 allows remote attackers to execute arbitrary SQL commands via the start parameter.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-422w-cq3x-prq2: SQL injection vulnerability in readpmsg2022-05-01
CVEList
CVE-2005-1777: SQL injection vulnerability in readpmsg2005-05-31

💥Exploits & PoCs

1
Exploit-DB
PostNuke 0.750 - 'readpmsg.php' SQL Injection2005-06-05
CVE-2005-1777 (HIGH CVSS 7.5) | SQL injection vulnerability in read | cvebase.io