Back

CVE-2005-4058

SQL injection vulnerability in saralblog 1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter to viewprofile.php.

Published: Dec 7, 2005 Modified: Jun 16, 2026
CWE-89

CVSS Metrics

Affected Products (2)

Vendor Product Version
saralblog saralblog 1
saralblog saralblog 1_beta

GitHub Security Advisory GHSA-55cr-974r-ghwg

SQL injection vulnerability in saralblog 1 and earlier allows remote attackers to execute...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.24%

Top 33% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub