Multiple SQL injection vulnerabilities in class.php in Professional Home Page Tools Guestbook allow remote attackers to execute arbitrary SQL commands via the (1) hidemail, (2) name, (3) mail, (4) ip, or (5) text parameters.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:14
Type | Values Removed | Values Added |
---|---|---|
References | () http://artemis.abenteuer-mittelerde.de/pub/adv02-phptgb.txt - Exploit | |
References | () http://secunia.com/advisories/21102 - Patch, Vendor Advisory | |
References | () http://securityreason.com/securityalert/1248 - | |
References | () http://securitytracker.com/id?1016550 - | |
References | () http://www.securityfocus.com/archive/1/440421/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/19019 - | |
References | () http://www.vupen.com/english/advisories/2006/2876 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/27774 - |
Information
Published : 2006-07-21 14:03
Updated : 2024-11-21 00:14
NVD link : CVE-2006-3752
Mitre link : CVE-2006-3752
CVE.ORG link : CVE-2006-3752
JSON object : View
Products Affected
professional_home_page_tools
- professional_home_page_tools_guestbook
CWE