CVE-2005-0569 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 2.7% (pctl 85)
Patch early
A public exploit exists.
Description
Multiple SQL injection vulnerabilities in PunBB 1.2.1 allow remote attackers to execute arbitrary SQL commands via the (1) language parameter to register.php, (2) change email feature in profile.php, (3) posts or (4) topics parameter to moderate.php.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 2.65% — more likely to be exploited than 85% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2005-05-02 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| punbb | punbb |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | PunBB 3.0/3.1 - Multiple Remote Input Validation Vulnerabilities | 2005-02-24 |
References
- http://marc.info/?l=bugtraq&m=110927754230666&w=2
- http://secunia.com/advisories/14394
- http://secunia.com/advisories/14538
- http://www.punbb.org/changelogs/1.2.1_to_1.2.2.txt
- http://www.securityfocus.com/bid/12652
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19473
- http://marc.info/?l=bugtraq&m=110927754230666&w=2
- http://secunia.com/advisories/14394
- http://secunia.com/advisories/14538
- http://www.punbb.org/changelogs/1.2.1_to_1.2.2.txt
- http://www.securityfocus.com/bid/12652
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19473
→ the Explorer · watch your stack · NVD