Back
CVE-2005-0617
SQL injection vulnerability in dl-search.php in PostNuke 0.750 and 0.760-RC2 allows remote attackers to execute arbitrary SQL commands via the show parameter.
Published: May 2, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (2)
| Vendor | Product | Version |
|---|---|---|
| postnuke_software_foundation | postnuke | 0.750 |
| postnuke_software_foundation | postnuke | 0.760_rc2 |
GitHub Security Advisory GHSA-ww46-53gr-39pj
SQL injection vulnerability in dl-search.php in PostNuke 0.750 and 0.760-RC2 allows remote...
References (6)
- http://marc.info/?l=bugtraq&m=110962710805864&w=2
- http://news.postnuke.com/Article2669.html Patch, Vendor Advisory
- http://securitytracker.com/id?1013324 Patch
- http://marc.info/?l=bugtraq&m=110962710805864&w=2
- http://news.postnuke.com/Article2669.html Patch, Vendor Advisory
- http://securitytracker.com/id?1013324 Patch
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.20%
Top 35% most likely to be exploited
Threat Score
30.4 / 100
Data Sources
NVD
EPSS
GitHub