7.5
CVSSv2

CVE-2006-2826

Published: 05/06/2006 Updated: 20/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in sessions.inc in PHP Base Library (PHPLib) prior to 7.4a allows remote malicious users to execute arbitrary SQL commands via the id variable, which is set by a client through a query string or a cookie.

Vulnerable Product Search on Vulmon Subscribe to Product

phplib team phplib 7.4

phplib team phplib 7.4_pre2

Exploits

PHPLib SQL Injection Vendor: PHPLib Product: PHPLib Version: <= 74 Website: phplibsourceforgenet/ BID: 16801 CVE: CVE-2006-0887 CVE-2006-2826 OSVDB: 23466 SECUNIA: 16902 Description: The PHP Base Library aka PHPLib is a toolkit for PHP developers supporting them in the development of Web applications The phpLib codebase can be ...