Multiple SQL injection vulnerabilities in Easy-Content Forums 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) startletter parameter in userview.asp and the (2) forumname parameter in topics.asp.
References
Configurations
History
21 Nov 2024, 00:11
Type | Values Removed | Values Added |
---|---|---|
References | () http://securityreason.com/securityalert/997 - | |
References | () http://www.securityfocus.com/archive/1/435140/100/0/threaded - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/26804 - |
Information
Published : 2006-05-31 10:06
Updated : 2024-11-21 00:11
NVD link : CVE-2006-2697
Mitre link : CVE-2006-2697
CVE.ORG link : CVE-2006-2697
JSON object : View
Products Affected
easy-content_forums
- easy-content_forums
CWE