CVE

Id
15586  
CVE No.
CVE-2005-4382  
Status
Candidate  
Description
SQL injection vulnerability in CitySoft Community Enterprise 4.x allows remote attackers to execute arbitrary SQL commands via the (1) nodeID, (2) pageID, (3) ID, and (4) parentid parameter to index.cfm; and (5) documentFormatId parameter to document/docWindow.cfm.  
Phase
Assigned (20051220)  
Votes
None (candidate not yet proposed)  
Comments