7.5
CVSSv2

CVE-2006-0823

Published: 21/02/2006 Updated: 18/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in Geeklog 1.4.0 prior to 1.4.0sr1 and 1.3.11 prior to 1.3.11sr4 allow remote malicious users to inject arbitrary SQL commands via the (1) userid variable to users.php or (2) sessid variable to lib-sessions.php.

Vulnerable Product Search on Vulmon Subscribe to Product

geeklog geeklog 1.3.11

geeklog geeklog 1.3.11_sr3

geeklog geeklog 1.4.0

geeklog geeklog 1.3.11_sr1

geeklog geeklog 1.3.11_sr2

Exploits

Geeklog Multiple Vulnerabilities Vendor: Geeklog Product: Geeklog Version: <= 140 Website: wwwgeeklognet/ BID: 16755 CVE: CVE-2006-0823 OSVDB: 23348 23349 SECUNIA: 18920 PACKETSTORM: 44070 Description: Geeklog is one of the most popular content management systems available today Geeklog unfortunately is vulnerable to a number ...