Back

CVE-2005-3938

SQL injection vulnerability in Softbiz FAQ Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the id parameter in (1) index.php, (2) faq_qanda.php, (3) refer_friend.php, (4) print_article.php, or (5) add_comment.php.

Published: Dec 1, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
softbizscripts faq_script *

GitHub Security Advisory GHSA-rvh5-44hf-h5w5

SQL injection vulnerability in Softbiz FAQ Script 1.1 and earler allows remote attackers to...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 3.74%

Top 11% most likely to be exploited

Threat Score 31.1 / 100

Data Sources

NVD EPSS GitHub