7.5
CVE-2006-7034
- EPSS 1.05%
- Veröffentlicht 23.02.2007 03:28:00
- Zuletzt bearbeitet 16.06.2026 22:34:15
- Erkennungen
SQL injection vulnerability in directory.php in Super Link Exchange Script 1.0 might allow remote attackers to execute arbitrary SQL queries via the cat parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Super Link Exchange Script ≫ Super Link Exchange Script Version 1.0
Apple ≫ macOS X Version 10.4.9
Hp ≫ Hp-ux
Hp ≫ Tru64 Version 5.1b_pk2_bl22
Ibm ≫ Aix
Ibm ≫ Os2
Linux ≫ Linux Kernel
Microsoft ≫ Windows 2000
Microsoft ≫ Windows 2003 Server Version sp2
Microsoft ≫ Windows 95
Microsoft ≫ Windows 98 Update gold
Microsoft ≫ Windows 98se
Microsoft ≫ Windows Me
Microsoft ≫ Windows Nt Version 4.0
Microsoft ≫ Windows Xp Update gold
Santa Cruz Operation ≫ Sco Unix
Sun ≫ Solaris
Windriver ≫ Bsdos
Hp ≫ Hp-ux
Hp ≫ Tru64 Version 5.1b_pk2_bl22
Ibm ≫ Aix
Ibm ≫ Os2
Linux ≫ Linux Kernel
Microsoft ≫ Windows 2000
Microsoft ≫ Windows 2003 Server Version sp2
Microsoft ≫ Windows 95
Microsoft ≫ Windows 98 Update gold
Microsoft ≫ Windows 98se
Microsoft ≫ Windows Me
Microsoft ≫ Windows Nt Version 4.0
Microsoft ≫ Windows Xp Update gold
Santa Cruz Operation ≫ Sco Unix
Sun ≫ Solaris
Windriver ≫ Bsdos
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.05% | 0.598 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://securityreason.com/securityalert/2285
http://www.securityfocus.com/archive/1/435166/30/4680/threaded
https://exchange.xforce.ibmcloud.com/vulnerabilities/26720