CVE

Id
11498  
CVE No.
CVE-2005-0292  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in index.php in PHP Gift Registry (phpGiftReg) 1.4.0, and possibly other versions before 1.5.0b1, allow remote attackers to execute arbitrary SQL commands via the (1) messageid, (2) shopper, (3) shopfor, or (4) itemid parameters.  
Phase
Assigned (20050210)  
Votes
None (candidate not yet proposed)  
Comments