5
CVSSv2

CVE-2006-1113

Published: 09/03/2006 Updated: 18/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

SQL injection vulnerability in podcast.php in Loudblog prior to 0.42 allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

gerrit van aaken loudblog 0.41

Exploits

source: wwwsecurityfocuscom/bid/17023/info Loudblog is prone to multiple input-validation vulnerabilities: - An SQL-injection vulnerability - Two local file-include vulnerabilities - An information-disclosure vulnerability These issues allow remote attackers to execute arbitrary PHP script code in the context of the hosting webserver ...