Back

CVE-2005-3937

SQL injection vulnerability in Softbiz B2B Trading Marketplace Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the cid parameter in (1) selloffers.php, (2) buyoffers.php, (3) products.php, or (4) profiles.php.

Published: Dec 1, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
softbizscripts b2b_trading_marketplace_script *

GitHub Security Advisory GHSA-68m4-gw7r-wgrq

SQL injection vulnerability in Softbiz B2B Trading Marketplace Script 1.1 and earler allows...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.35%

Top 31% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub