6.5
CVSSv2

CVE-2006-3827

Published: 25/07/2006 Updated: 17/10/2018
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in bmc/Inc/core/admin/search.inc.php in Kailash Nadh boastMachine (formerly bMachine) 3.1 and previous versions allows remote authenticated administrators to execute arbitrary SQL commands via the blog parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

kailash nadh boastmachine 2.8

kailash nadh boastmachine 2.7

kailash nadh boastmachine 2.9b

kailash nadh boastmachine 2.5

kailash nadh boastmachine 3.1