AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2005-3304

HIGH · CVSS 7.5 EPSS 5.63%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-10-26 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2005-3304
Severity
HIGH
CVSS
7.5
EPSS
5.63%

Original NVD Description

Multiple SQL injection vulnerabilities in PHP-Nuke 7.8 allow remote attackers to modify SQL queries and execute arbitrary PHP code via (1) the username parameter in the Your Account page, (2) the url parameter in the Downloads module, and (3) the description parameter in the Web_Links module.