{"api_version":"1","generated_at":"2026-07-23T03:48:06+00:00","cve":"CVE-2005-3236","urls":{"html":"https://cve.report/CVE-2005-3236","api":"https://cve.report/api/cve/CVE-2005-3236.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-3236","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-3236"},"summary":{"title":"CVE-2005-3236","description":"Multiple SQL injection vulnerabilities in Cyphor 0.19 allow remote attackers to execute arbitrary SQL and obtain administrative access via (1) the fid parameter of newmsg.php, which can enable XSS attacks when the SQL syntax is invalid or (2) the nick parameter of lostpwd.php.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-10-14 10:02:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"6.8","severity":"","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:P","baseScore":6.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22552","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22552","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/19944","name":"http://www.osvdb.org/19944","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://securityreason.com/securityalert/70","name":"http://securityreason.com/securityalert/70","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityReason","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=112879353805769&w=2","name":"http://marc.info/?l=bugtraq&m=112879353805769&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'Cyphor 0.19 SQL Injection / Board takeover / cross site scripting' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/19945","name":"http://www.osvdb.org/19945","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://www.securityfocus.com/bid/15047","name":"http://www.securityfocus.com/bid/15047","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Cyphor Multiple Input Validation Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://securitytracker.com/id?1015020","name":"http://securitytracker.com/id?1015020","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - Cyphor Input Validation Holes Permot SQL Injection and Cross-Site Scripting Attacks","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/19943","name":"http://www.osvdb.org/19943","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://secunia.com/advisories/17104/","name":"http://secunia.com/advisories/17104/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Cyphor Cross-Site Scripting and SQL Injection Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-3236","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-3236","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"3236","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"cynox","cpe5":"cyphor","cpe6":"0.19","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T23:01:59.395Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"1015020","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1015020"},{"name":"19944","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/19944"},{"name":"cyphor-lostpwd-newmsg-sql-injection(22552)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22552"},{"name":"70","tags":["third-party-advisory","x_refsource_SREASON","x_transferred"],"url":"http://securityreason.com/securityalert/70"},{"name":"19945","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/19945"},{"name":"17104","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/17104/"},{"name":"19943","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/19943"},{"name":"15047","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/15047"},{"name":"20051008 Cyphor 0.19 SQL Injection / Board takeover / cross site scripting","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=112879353805769&w=2"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2005-10-08T00:00:00.000Z","descriptions":[{"lang":"en","value":"Multiple SQL injection vulnerabilities in Cyphor 0.19 allow remote attackers to execute arbitrary SQL and obtain administrative access via (1) the fid parameter of newmsg.php, which can enable XSS attacks when the SQL syntax is invalid or (2) the nick parameter of lostpwd.php."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-10T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"1015020","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1015020"},{"name":"19944","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/19944"},{"name":"cyphor-lostpwd-newmsg-sql-injection(22552)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22552"},{"name":"70","tags":["third-party-advisory","x_refsource_SREASON"],"url":"http://securityreason.com/securityalert/70"},{"name":"19945","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/19945"},{"name":"17104","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/17104/"},{"name":"19943","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/19943"},{"name":"15047","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/15047"},{"name":"20051008 Cyphor 0.19 SQL Injection / Board takeover / cross site scripting","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=112879353805769&w=2"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2005-3236","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Multiple SQL injection vulnerabilities in Cyphor 0.19 allow remote attackers to execute arbitrary SQL and obtain administrative access via (1) the fid parameter of newmsg.php, which can enable XSS attacks when the SQL syntax is invalid or (2) the nick parameter of lostpwd.php."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"1015020","refsource":"SECTRACK","url":"http://securitytracker.com/id?1015020"},{"name":"19944","refsource":"OSVDB","url":"http://www.osvdb.org/19944"},{"name":"cyphor-lostpwd-newmsg-sql-injection(22552)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/22552"},{"name":"70","refsource":"SREASON","url":"http://securityreason.com/securityalert/70"},{"name":"19945","refsource":"OSVDB","url":"http://www.osvdb.org/19945"},{"name":"17104","refsource":"SECUNIA","url":"http://secunia.com/advisories/17104/"},{"name":"19943","refsource":"OSVDB","url":"http://www.osvdb.org/19943"},{"name":"15047","refsource":"BID","url":"http://www.securityfocus.com/bid/15047"},{"name":"20051008 Cyphor 0.19 SQL Injection / Board takeover / cross site scripting","refsource":"BUGTRAQ","url":"http://marc.info/?l=bugtraq&m=112879353805769&w=2"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2005-3236","datePublished":"2005-10-14T04:00:00.000Z","dateReserved":"2005-10-14T00:00:00.000Z","dateUpdated":"2024-08-07T23:01:59.395Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-10-14 10:02:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:P","baseScore":6.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cynox:cyphor:0.19:*:*:*:*:*:*:*","matchCriteriaId":"9961F038-5A12-4D81-B023-A92BA7CEC114"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"3236","Ordinal":"1","Title":"CVE-2005-3236","CVE":"CVE-2005-3236","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"3236","Ordinal":"1","NoteData":"Multiple SQL injection vulnerabilities in Cyphor 0.19 allow remote attackers to execute arbitrary SQL and obtain administrative access via (1) the fid parameter of newmsg.php, which can enable XSS attacks when the SQL syntax is invalid or (2) the nick parameter of lostpwd.php.","Type":"Description","Title":"CVE-2005-3236"},{"CveYear":"2005","CveId":"3236","Ordinal":"2","NoteData":"2005-10-14","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"3236","Ordinal":"3","NoteData":"2017-07-10","Type":"Other","Title":"Modified"}]}}}