Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-4140

EPSS 2.39% · P85
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-4140

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
SQL injection vulnerability in admin/login/index.php in Website Baker 2.6.0 allows remote attackers to execute arbitrary SQL commands via the username parameter, as used by the user field.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Website Baker远程SQL注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Website Baker是一款基于WEB的PHP编写的内容管理程序。 Website Baker对用户提交给的参数缺少正确充分的过滤,远程攻击者可以利用此漏洞非授权操作数据库,绕过访问认证获取管理员权限。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-4140

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-4140

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-12-09 · 14 CVEs total

CVE-2005-4126Real Networks RealPlayer未指定的远程代码执行漏洞
CVE-2005-4130Real Networks RealPlayer 未明漏洞
CVE-2005-4131Microsoft Excel畸形命名区域内存破坏漏洞
CVE-2005-4132Contenido CMS未指定的远程命令执行漏洞
CVE-2004-2650Apache James Spooler内存泄漏拒绝服务漏洞
CVE-2005-4133Sun Solaris Sun Update Connection Web代理服务器密码泄露漏洞
CVE-2005-4134Mozilla Firefox多个远程安全漏洞
CVE-2005-4135SimpleBBS远程命令执行漏洞
CVE-2005-4136DRZES HMS Login.PHP跨站脚本攻击漏洞
CVE-2005-4137DRZES HMS Login.PHP跨站脚本攻击漏洞
CVE-2005-4138ThWboard多个跨站脚本攻击漏洞
CVE-2005-4139ThWboard多个输入验证漏洞
CVE-2005-4141ASPMForum多个SQL注入漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2005-4140

No comments yet


Leave a comment