CVE-2005-3909 | Post Affiliate Pro up to 2.0.4 merchants/index.php sortorder sql injection (EDB-26652 / XFDB-23260)
A vulnerability categorized as critical has been discovered in Post Affiliate Pro up to 2.0.4. Affected by this issue is some unknown functionality of the file merchants/index.php. Such manipulation of the argument sortorder leads to sql injection.
This vulnerability is uniquely identified as CVE-2005-3909. The attack can be launched remotely. Moreover, an exploit is present.