Back to search
CVE-2006-4606
Published: Sep 7, 2006
Modified: Aug 7, 2024
PUBLISHED
Description
Multiple SQL injection vulnerabilities in Longino Jacome php-Revista 1.1.2 allow remote attackers to execute arbitrary SQL commands via the (1) id_temas parameter in busqueda_tema.php, the (2) cadena parameter in busqueda.php, the (3) id_autor parameter in autor.php, the (4) email parameter in lista.php, and the (5) id_articulo parameter in articulo.php.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
19818
vdb-entry
x_refsource_BID
8425
exploit
x_refsource_EXPLOIT-DB
3538
exploit
x_refsource_EXPLOIT-DB
28452
vdb-entry
x_refsource_OSVDB
28446
vdb-entry
x_refsource_OSVDB
28447
vdb-entry
x_refsource_OSVDB
20090413 Re: PHP-Revista Multiple vulnerabilities
mailing-list
x_refsource_BUGTRAQ
1499
third-party-advisory
x_refsource_SREASON
28445
vdb-entry
x_refsource_OSVDB
20060902 PHP-Revista Multiple vulnerabilities
mailing-list
x_refsource_BUGTRAQ
20090415 PHP-Revista 1.1.2 (RFI/SQLi/CB/XSS) Multiple Remote Vulnerabilities
mailing-list
x_refsource_VIM
28448
vdb-entry
x_refsource_OSVDB
21738
third-party-advisory
x_refsource_SECUNIA
28451
vdb-entry
x_refsource_OSVDB
23079
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now