SQL injection vulnerability in block_forum_topic_new.php in ViArt Shop Free 2.5.5, and possibly other distributions including Light, Standard, and Enterprise, might allow remote attackers to execute arbitrary SQL commands via unknown vectors, probably involving the forum_id parameter.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:12
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.attrition.org/pipermail/vim/2006-June/000846.html - | |
References | () http://www.codetosell.com/downloads/xss_fix.zip - URL Repurposed | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/27684 - |
14 Feb 2024, 01:17
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.codetosell.com/downloads/xss_fix.zip - URL Repurposed |
Information
Published : 2006-06-12 22:02
Updated : 2024-11-21 00:12
NVD link : CVE-2006-2980
Mitre link : CVE-2006-2980
CVE.ORG link : CVE-2006-2980
JSON object : View
Products Affected
viart_ltd
- viart_shop_free
CWE