CVE-2006-3963

Multiple SQL injection vulnerabilities in Banex PHP MySQL Banner Exchange 2.21 allow remote attackers to execute arbitrary SQL commands via the (1) site_name parameter to (a) signup.php, and the (2) id, (3) deleteuserbanner, (4) viewmem, (5) viewmemunb, (6) viewunmem,or (7) deleteuser parameters to (b) admin.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:banex:banex:2.21:*:*:*:*:*:*:*

History

21 Nov 2024, 00:14

Type Values Removed Values Added
References () http://marc.info/?l=full-disclosure&m=115423462216111&w=2 - () http://marc.info/?l=full-disclosure&m=115423462216111&w=2 -
References () http://www.securityfocus.com/bid/19240 - Exploit () http://www.securityfocus.com/bid/19240 - Exploit

Information

Published : 2006-08-01 22:04

Updated : 2024-11-21 00:14


NVD link : CVE-2006-3963

Mitre link : CVE-2006-3963

CVE.ORG link : CVE-2006-3963


JSON object : View

Products Affected

banex

  • banex