7.5
CVE-2006-5765
- EPSS 1.26%
- Veröffentlicht 06.11.2006 23:07:00
- Zuletzt bearbeitet 16.06.2026 22:31:50
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in rss.php in Article Script 1.6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Article Script ≫ Article Script Version <= 1.6.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.26% | 0.658 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/22698
http://securityreason.com/securityalert/1826
http://www.blogcu.com/Liz0ziM/1312100
http://www.securityfocus.com/archive/1/450678
http://www.securityfocus.com/bid/20929
http://www.vupen.com/english/advisories/2006/4352
https://exchange.xforce.ibmcloud.com/vulnerabilities/30038