CVE-2005-2690 | PostNuke 0.76 Rc4b Downloads dl-viewdownload.php show sql injection (EDB-26189 / Nessus ID 19545)
A vulnerability classified as critical was found in PostNuke 0.76 Rc4b. Impacted is an unknown function of the file dl-viewdownload.php of the component Downloads Module. Executing manipulation of the argument show can lead to sql injection.
This vulnerability is tracked as CVE-2005-2690. The attack can be launched remotely. Moreover, an exploit is present.
Upgrading the affected component is advised.