CVE-2006-4056

Multiple SQL injection vulnerabilities in the authentication process in katzlbt (a) The Address Book 1.04e and earlier and (b) The Address Book Reloaded before 2.0-rc4 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters. NOTE: portions of these details are obtained from third party information.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:the_address_book:the_address_book:*:*:*:*:*:*:*:*
cpe:2.3:a:the_address_book_reloaded:the_address_book_reloaded:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-08-10 00:04

Updated : 2024-02-04 16:52


NVD link : CVE-2006-4056

Mitre link : CVE-2006-4056

CVE.ORG link : CVE-2006-4056


JSON object : View

Products Affected

the_address_book_reloaded

  • the_address_book_reloaded

the_address_book

  • the_address_book