CVE Database
/

CVE-2006-2753

Back to search

CVE-2006-2753

Published: Jun 1, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

SQL injection vulnerability in MySQL 4.1.x before 4.1.20 and 5.0.x before 5.0.22 allows context-dependent attackers to execute arbitrary SQL commands via crafted multibyte encodings in character sets such as SJIS, BIG5, and GBK, which are not properly handled when the mysql_real_escape function is used to escape the input.

VendorProductVersions

n/a

n/a

affected
n/a

References

DSA-1092
vendor-advisory
x_refsource_DEBIAN
mysql-ascii-sql-injection(26875)
vdb-entry
x_refsource_XF
20712
third-party-advisory
x_refsource_SECUNIA
MDKSA-2006:097
vendor-advisory
x_refsource_MANDRIVA
20541
third-party-advisory
x_refsource_SECUNIA
TA07-072A
third-party-advisory
x_refsource_CERT
20562
third-party-advisory
x_refsource_SECUNIA
2006-0034
vendor-advisory
x_refsource_TRUSTIX
APPLE-SA-2007-03-13
vendor-advisory
x_refsource_APPLE
GLSA-200606-13
vendor-advisory
x_refsource_GENTOO
20365
third-party-advisory
x_refsource_SECUNIA
20531
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:10312
vdb-entry
signature
x_refsource_OVAL
ADV-2006-2105
vdb-entry
x_refsource_VUPEN
18219
vdb-entry
x_refsource_BID
20489
third-party-advisory
x_refsource_SECUNIA
1016216
vdb-entry
x_refsource_SECTRACK
USN-303-1
vendor-advisory
x_refsource_UBUNTU
ADV-2007-0930
vdb-entry
x_refsource_VUPEN
USN-288-3
vendor-advisory
x_refsource_UBUNTU
20625
third-party-advisory
x_refsource_SECUNIA
RHSA-2006:0544
vendor-advisory
x_refsource_REDHAT
24479
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now