7.5
CVE-2006-6247
- EPSS 1.19%
- Veröffentlicht 04.12.2006 11:28:00
- Zuletzt bearbeitet 16.06.2026 22:32:45
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple SQL injection vulnerabilities in Uapplication UPhotoGallery 1.1 allow remote attackers to execute arbitrary SQL commands via the ci parameter to (1) slideshow.asp or (2) thumbnails.asp.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Uapplication ≫ Uphotogallery Version1.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.19% | 0.638 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://securityreason.com/securityalert/1950
http://www.aria-security.com/forum/showthread.php?t=53
http://www.securityfocus.com/archive/1/452827/100/0/threaded
http://www.securityfocus.com/archive/1/459187/100/0/threaded
http://www.securityfocus.com/bid/21319
https://exchange.xforce.ibmcloud.com/vulnerabilities/30556