CVE

Id
11574  
CVE No.
CVE-2005-0368  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in CMScore allow remote attackers to execute arbitrary SQL commands via the (1) EntryID or (2) searchterm parameter to index.php, or (3) username parameter to authenticate.php.  
Phase
Assigned (20050211)  
Votes
None (candidate not yet proposed)  
Comments