6.4

CVE-2006-1334

Multiple SQL injection vulnerabilities in Maian Weblog 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) entry and (2) email parameters to (a) print.php and (b) mail.php.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Maian Script WorldMaian Weblog Version <= 2.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.3% 0.811
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.4 10 4.9
AV:N/AC:L/Au:N/C:P/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://evuln.com/vulns/101/summary.html
http://secunia.com/advisories/19273
Vendor Advisory
http://securityreason.com/securityalert/638
http://securitytracker.com/id?1015818
http://www.osvdb.org/23945
http://www.osvdb.org/23946
http://www.securityfocus.com/archive/1/428903/100/0/threaded
http://www.securityfocus.com/bid/17159
http://www.securityfocus.com/bid/17247
http://www.vupen.com/english/advisories/2006/0994
https://exchange.xforce.ibmcloud.com/vulnerabilities/25295