Back

CVE-2005-0929

SQL injection vulnerability in PhotoPost PHP Pro 5.x may allow remote attackers to execute arbitrary SQL commands via (1) the sl parameter to showmembers.php or (2) the photo parameter to showphoto.php.

Published: May 2, 2005 Modified: Jun 16, 2026

CVSS Metrics

GitHub Security Advisory GHSA-h7pq-2wjp-gmq7

SQL injection vulnerability in PhotoPost PHP Pro 5.x may allow remote attackers to execute...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.61%

Top 16% most likely to be exploited

Threat Score 30.8 / 100

Data Sources

NVD EPSS GitHub