CVE

Id
15275  
CVE No.
CVE-2005-4071  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in CFMagic Magic Forum Personal 2.5 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ForumID parameter in view_forum.cfm, and (2) ForumID, (3) Thread, and (4) ThreadID parameters in view_thread.cfm.  
Phase
Assigned (20051208)  
Votes
None (candidate not yet proposed)  
Comments