Back

CVE-2005-2723

SQL injection vulnerability in auth.php in PaFileDB 3.1, when authmethod is set to cookies, allows remote attackers to execute arbitrary SQL commands via the username value in the pafiledbcookie cookie.

Published: Aug 30, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
php_arena pafiledb 3.1

GitHub Security Advisory GHSA-4hr3-869x-3fqh

SQL injection vulnerability in auth.php in PaFileDB 3.1, when authmethod is set to cookies,...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.35%

Top 31% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub