7.5

CVE-2006-7034

SQL injection vulnerability in directory.php in Super Link Exchange Script 1.0 might allow remote attackers to execute arbitrary SQL queries via the cat parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Super Link Exchange Script ≫ Super Link Exchange Script Version 1.0
   Apple ≫ macOS X Version 10.4.9
   Hp ≫ Hp-ux
   Hp ≫ Tru64 Version 5.1b_pk2_bl22
   Ibm ≫ Aix
   Ibm ≫ Os2
   Linux ≫ Linux Kernel
   Microsoft ≫ Windows 2000
   Microsoft ≫ Windows 2003 Server Version sp2
   Microsoft ≫ Windows 95
   Microsoft ≫ Windows 98 Update gold
   Microsoft ≫ Windows 98se
   Microsoft ≫ Windows Me
   Microsoft ≫ Windows Nt Version 4.0
   Microsoft ≫ Windows Xp Update gold
   Santa Cruz Operation ≫ Sco Unix
   Sun ≫ Solaris
   Windriver ≫ Bsdos
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.05% 0.598
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://securityreason.com/securityalert/2285
http://www.securityfocus.com/archive/1/435166/30/4680/threaded
https://exchange.xforce.ibmcloud.com/vulnerabilities/26720