{"id":"CVE-2005-1810","details":"SQL injection vulnerability in template-functions-category.php in WordPress 1.5.1 allows remote attackers to execute arbitrary SQL commands via the $cat_ID variable, as demonstrated using the cat parameter to index.php.","modified":"2026-01-27T04:05:59.812487Z","published":"2005-06-01T04:00:00Z","withdrawn":"2026-01-27T04:05:59.812487Z","references":[{"type":"ADVISORY","url":"http://security.gentoo.org/glsa/glsa-200506-04.xml"},{"type":"ADVISORY","url":"http://wordpress.org/development/2005/05/security-update/"},{"type":"FIX","url":"http://secunia.com/advisories/15517"},{"type":"WEB","url":"http://bugs.gentoo.org/show_bug.cgi?id=94512"},{"type":"WEB","url":"http://marc.info/?l=bugtraq&m=111817436619067&w=2"},{"type":"WEB","url":"http://www.osvdb.org/16905"},{"type":"WEB","url":"http://www.securityfocus.com/bid/13809"}],"schema_version":"1.7.3"}