Back

CVE-2005-1048

SQL injection vulnerability in modules.php in PostNuke 0.760 RC3 allows remote attackers to execute arbitrary SQL statements via the sid parameter. NOTE: the vendor reports that they could not reproduce the issues for 760 RC3, or for .750.

Published: May 2, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
postnuke_software_foundation postnuke 0.760_rc3

GitHub Security Advisory GHSA-32hf-mgvj-h3ph

SQL injection vulnerability in modules.php in PostNuke 0.760 RC3 allows remote attackers to...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.41%

Top 30% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub