Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2005-0946


Vulnerability Score 7.5 7.5
CVE Id CVE-2005-0946
Last Modified 07 Mar 2011 09:20:50
Published 29 Mar 2005 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE



SQL injection vulnerability in phpCoin 1.2.1b and earlier allows remote attackers to execute arbitrary SQL commands via the (1) term/keywords field on the search page, (2) username or (3) e-mail field on the forgot password page, or (4) domain name on the ordering new package page.

Vulnerable Systems


  • Coinsoft Technologies Phpcoin 1.2

  • Coinsoft Technologies Phpcoin 1.2.1

  • Coinsoft Technologies Phpcoin 1.2.1b


BID - 12917

BUGTRAQ - 20050329 Multiple phpCoin Vulnerabilities


Last Updated: 27 May 2016 10:39:58