7.5
CVE-2006-6247
- EPSS 1.22%
- Veröffentlicht 04.12.2006 11:28:00
- Zuletzt bearbeitet 16.06.2026 22:32:45
- Erkennungen
Multiple SQL injection vulnerabilities in Uapplication UPhotoGallery 1.1 allow remote attackers to execute arbitrary SQL commands via the ci parameter to (1) slideshow.asp or (2) thumbnails.asp.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Uapplication ≫ Uphotogallery Version 1.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.22% | 0.651 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://securityreason.com/securityalert/1950
http://www.aria-security.com/forum/showthread.php?t=53
http://www.securityfocus.com/archive/1/452827/100/0/threaded
http://www.securityfocus.com/archive/1/459187/100/0/threaded
http://www.securityfocus.com/bid/21319
https://exchange.xforce.ibmcloud.com/vulnerabilities/30556