5.1
CVSSv2

CVE-2006-0801

Published: 20/02/2006 Updated: 20/07/2017
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 515
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the NS-Languages module for PostNuke 0.761 and previous versions, when magic_quotes_gpc is off, allows remote malicious users to execute arbitrary SQL commands via the language parameter to admin.php.

Vulnerable Product Search on Vulmon Subscribe to Product

postnuke software foundation postnuke

Exploits

source: wwwsecurityfocuscom/bid/16752/info PostNuke is prone to multiple input-validation vulnerabilities These issues are due to the application's failure to properly sanitize user-supplied input Successful exploitation could allow an attacker to compromise the application, access or modify data, steal cookie-based authentication c ...