Back

CVE-2005-3769

SQL injection vulnerability in files.php in PHP Download Manager 1.1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter.

Published: Nov 23, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (3)

Vendor Product Version
php_download_manager php_download_manager 1.1
php_download_manager php_download_manager 1.1.2
php_download_manager php_download_manager 1.1.3

GitHub Security Advisory GHSA-mr5j-g9m9-gqmw

SQL injection vulnerability in files.php in PHP Download Manager 1.1.3 and earlier allows remote...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.06%

Top 38% most likely to be exploited

Threat Score 30.3 / 100

Data Sources

NVD EPSS GitHub