CVE-2005-2474

N/A Unknown
Published: August 05, 2005 Modified: April 16, 2026
View on NVD

Description

ChurchInfo allows remote attackers to execute obtain sensitive information via the PersonID parameter to (1) PersonView.php, (2) MemberRoleChange.php, (3) PropertyAssign.php, (4) WhyCameEditor.php, (5) GroupPropsEditor.php, (6) Reports/PDFLabel.php, or (7) UserDelete.php, an invalid Number parameter to (8) SelectList.php or (9) SelectDelete.php, GroupID parameter to (10) GroupView.php, (11) GroupMemberList.php, (12) MemberRoleChange.php, (13) GroupDelete.php, (14) /Reports/ClassAttendance.php, or (15) /Reports/GroupReport.php, (16) PropertyID parameter to PropertyEditor.php, FamilyID parameter to (17) Canvas05Editor.php, (18) CanvasEditor.php, or (19) FamilyView.php, or (20) PledgeID parameter to PledgeDetails.php, which reveal the path in an error message.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://www.osvdb.org/18425
Source: cve@mitre.org
http://www.osvdb.org/18426
Source: cve@mitre.org
http://www.osvdb.org/18429
Source: cve@mitre.org
http://www.osvdb.org/18430
Source: cve@mitre.org
http://www.osvdb.org/18431
Source: cve@mitre.org
http://www.osvdb.org/18432
Source: cve@mitre.org
http://www.osvdb.org/18433
Source: cve@mitre.org
http://www.osvdb.org/18434
Source: cve@mitre.org
http://www.osvdb.org/18435
Source: cve@mitre.org
http://www.osvdb.org/18436
Source: cve@mitre.org
http://www.osvdb.org/18437
Source: cve@mitre.org
http://www.osvdb.org/18438
Source: cve@mitre.org
http://www.osvdb.org/18439
Source: cve@mitre.org
http://www.osvdb.org/18450
Source: cve@mitre.org
http://marc.info/?l=bugtraq&m=112291550713546&w=2
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/16292
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1014617
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18425
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18426
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18429
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18430
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18431
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18432
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18433
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18434
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18435
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18436
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18437
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18438
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18439
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/18450
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/21648
Source: af854a3a-2127-422b-91ae-364da2661108

36 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
1.1%
78th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

churchinfo