CVE-2006-7150

Multiple SQL injection vulnerabilities in Mambo 4.6.x allow remote attackers to execute arbitrary SQL commands via the mcname parameter to (1) moscomment.php and (2) com_comment.php.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mambo:mambo_open_source:4.6:*:cvs:*:*:*:*:*
cpe:2.3:a:mambo:mambo_open_source:4.6:rc1:*:*:*:*:*:*
cpe:2.3:a:mambo:mambo_open_source:4.6:rc2:*:*:*:*:*:*
cpe:2.3:a:mambo:mambo_open_source:4.6.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-03-07 20:19

Updated : 2024-02-04 17:13


NVD link : CVE-2006-7150

Mitre link : CVE-2006-7150

CVE.ORG link : CVE-2006-7150


JSON object : View

Products Affected

mambo

  • mambo_open_source