SQL injection vulnerability in saphplesson 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) forumid parameter in add.php and (2) lessid parameter in show.php.
References
Configurations
History
21 Nov 2024, 00:12
Type | Values Removed | Values Added |
---|---|---|
References | () http://securityreason.com/securityalert/1047 - | |
References | () http://www.securityfocus.com/archive/1/435202/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/440120 - | |
References | () http://www.securityfocus.com/archive/1/472798/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/18117 - | |
References | () http://www.securityfocus.com/bid/18934 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/26757 - |
Information
Published : 2006-06-06 20:06
Updated : 2024-11-21 00:12
NVD link : CVE-2006-2835
Mitre link : CVE-2006-2835
CVE.ORG link : CVE-2006-2835
JSON object : View
Products Affected
arabless
- saphplesson
CWE