7.5
CVE-2006-6398
- EPSS 1%
- Veröffentlicht 08.12.2006 01:28:00
- Zuletzt bearbeitet 16.06.2026 22:33:03
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple SQL injection vulnerabilities in Superfreaker Studios UPublisher 1.0 allow remote attackers to execute arbitrary SQL commands via unspecified vectors in (a) sendarticle.asp and (b) printarticle.asp, and the ID parameter to (c) index.asp and (d) preferences.asp, different vectors than CVE-2006-5888.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Superfreaker Studios ≫ Upublisher Version1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1% | 0.583 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/22840
http://www.securityfocus.com/archive/1/453462/100/0/threaded