7.5
CVSSv2

CVE-2006-4142

Published: 14/08/2006 Updated: 17/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in extra/online.php in Virtual War (VWar) 1.5.0 R14 and previous versions allows remote malicious users to execute arbitrary SQL commands via the n parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

vwar virtual war 1.5.0

vwar virtual war 1.5.0_r2

vwar virtual war 1.5.0_r11

vwar virtual war 1.5.0_r12

vwar virtual war 1.5.0_r6

vwar virtual war 1.5.0_r7

vwar virtual war 1.5.0_r1

vwar virtual war 1.5.0_r10

vwar virtual war 1.5.0_r4

vwar virtual war 1.5.0_r5

vwar virtual war 1.5.0_r3

vwar virtual war 1.5.0_r13

vwar virtual war 1.5.0_r14

vwar virtual war 1.5.0_r8

vwar virtual war 1.5.0_r9

Exploits

:[ insecurity research team ]: ______:__________:____ : | |/ \:/ ___// __ \:/ _\: : | | | \\____\\ ___/\ /__ : : |__|___| /____ >\___ >\___ >: : \/ :\/: \/ :\/: : advisory : :: 1oo82oo6 Affected Application: ...