CVE-2005-4065
EPSS 3.4%trac - missing input sanitising
Published: 12/7/2005Modified: 4/28/2026
Description
SQL injection vulnerability in the search module in Edgewall Trac before 0.9.2 allows remote attackers to execute arbitrary SQL commands via unknown vectors.
Affected packages (2)
- Debian/tracfrom 0, < 0.9.2-1
- Debian/tracfrom 0, < 0.8.1-3sarge4