7.5
CVE-2006-6398
- EPSS 1.05%
- Veröffentlicht 08.12.2006 01:28:00
- Zuletzt bearbeitet 16.06.2026 22:33:03
- Erkennungen
Multiple SQL injection vulnerabilities in Superfreaker Studios UPublisher 1.0 allow remote attackers to execute arbitrary SQL commands via unspecified vectors in (a) sendarticle.asp and (b) printarticle.asp, and the ID parameter to (c) index.asp and (d) preferences.asp, different vectors than CVE-2006-5888.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Superfreaker Studios ≫ Upublisher Version 1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.05% | 0.602 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/22840
http://www.securityfocus.com/archive/1/453462/100/0/threaded