Back
CVE-2005-4792
SQL injection vulnerability in index.php in Appalachian State University phpWebSite 0.10.1 and earlier allows remote attackers to execute arbitrary SQL commands via the module parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Published: Dec 31, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (13)
| Vendor | Product | Version |
|---|---|---|
| phpwebsite | phpwebsite | * |
| phpwebsite | phpwebsite | 0.7.3 |
| phpwebsite | phpwebsite | 0.8.2 |
| phpwebsite | phpwebsite | 0.8.3 |
| phpwebsite | phpwebsite | 0.9.0 |
| phpwebsite | phpwebsite | 0.9.1 |
| phpwebsite | phpwebsite | 0.9.2 |
| phpwebsite | phpwebsite | 0.9.3 |
| phpwebsite | phpwebsite | 0.9.3.1 |
| phpwebsite | phpwebsite | 0.9.3.2 |
| phpwebsite | phpwebsite | 0.9.3.3 |
| phpwebsite | phpwebsite | 0.9.3.4 |
| phpwebsite | phpwebsite | 0.10 |
GitHub Security Advisory GHSA-42xm-24j2-64jf
SQL injection vulnerability in index.php in Appalachian State University phpWebSite 0.10.1 and...
References (2)
- http://www.securityfocus.com/bid/15088 Exploit, Patch
- http://www.securityfocus.com/bid/15088 Exploit, Patch
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.09%
Top 37% most likely to be exploited
Threat Score
30.3 / 100
Data Sources
NVD
EPSS
GitHub