7.5
CVE-2006-5707
- EPSS 2.08%
- Veröffentlicht 04.11.2006 01:07:00
- Zuletzt bearbeitet 16.06.2026 22:31:41
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in index.php in PHPEasyData Pro 1.4.1 and 2.2.1 allows remote attackers to execute arbitrary SQL commands via the cat parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Phpeasydata Pro ≫ Phpeasydata Pro Version1.4.1
Phpeasydata Pro ≫ Phpeasydata Pro Version2.2.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.08% | 0.79 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/22616
http://securityreason.com/securityalert/1814
http://securitytracker.com/id?1017137
http://www.securityfocus.com/archive/1/450052/100/0/threaded
http://www.securityfocus.com/archive/1/450054/100/0/threaded
http://www.securityfocus.com/bid/20790
http://www.vupen.com/english/advisories/2006/4263
https://exchange.xforce.ibmcloud.com/vulnerabilities/29866
https://www.exploit-db.com/exploits/2675