7.5
CVE-2006-0313
- EPSS 1.97%
- Veröffentlicht 19.01.2006 01:03:00
- Zuletzt bearbeitet 16.06.2026 22:20:19
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple SQL injection vulnerabilities in PDFdirectory before 1.0 allow remote attackers to execute arbitrary SQL commands via multiple unspecified vectors involving (1) util.php, (2) userpref.php, (3) user.php, (4) uploadfrm.php, (5) title.php, (6) team.php, (7) stats.php, (8) page.php, (9) org.php, (10) member.php, (11) index.php, (12) group.php, or (13) anniv.php.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Pdfdirectory ≫ Pdfdirectory Version0.2.2
Pdfdirectory ≫ Pdfdirectory Version0.2.3
Pdfdirectory ≫ Pdfdirectory Version0.2.4
Pdfdirectory ≫ Pdfdirectory Version0.2.5
Pdfdirectory ≫ Pdfdirectory Version0.2.6
Pdfdirectory ≫ Pdfdirectory Version0.2.7
Pdfdirectory ≫ Pdfdirectory Version0.2.8
Pdfdirectory ≫ Pdfdirectory Version0.2.9
Pdfdirectory ≫ Pdfdirectory Version0.2.10
Pdfdirectory ≫ Pdfdirectory Version0.2.11
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.97% | 0.778 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/18459
http://sourceforge.net/project/shownotes.php?release_id=382411&group_id=122682
http://www.osvdb.org/22403
http://www.osvdb.org/22404
http://www.osvdb.org/22405
http://www.osvdb.org/22406
http://www.osvdb.org/22407
http://www.osvdb.org/22408
http://www.osvdb.org/22409
http://www.osvdb.org/22410
http://www.osvdb.org/22411
http://www.osvdb.org/22412
http://www.osvdb.org/22413
http://www.osvdb.org/22414
http://www.osvdb.org/22415
http://www.securityfocus.com/bid/16273
http://www.vupen.com/english/advisories/2006/0231