7.5
CVE-2006-6021
- EPSS 1.21%
- Veröffentlicht 21.11.2006 23:07:00
- Zuletzt bearbeitet 16.06.2026 22:32:18
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SQL injection vulnerability in the login component in BestWebApp Dating Site allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) passwd parameters.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.21% | 0.645 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/23017
http://securityreason.com/securityalert/1898
http://www.securityfocus.com/archive/1/451963/100/0/threaded
http://www.securityfocus.com/archive/1/488647/100/100/threaded
http://www.securityfocus.com/bid/21158
https://exchange.xforce.ibmcloud.com/vulnerabilities/30394