7.5
CVSSv2

CVE-2006-4606

Published: 07/09/2006 Updated: 17/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in Longino Jacome php-Revista 1.1.2 allow remote malicious users to execute arbitrary SQL commands via the (1) id_temas parameter in busqueda_tema.php, the (2) cadena parameter in busqueda.php, the (3) id_autor parameter in autor.php, the (4) email parameter in lista.php, and the (5) id_articulo parameter in articulo.php.

Vulnerable Product Search on Vulmon Subscribe to Product

longino jacome php-revista 1.1.2

Exploits

Discovered by Sirdarckcat from elhackernet ------------------------------------------------------------------------ ------------ Revista 112 php-revistasourceforgeorg ------------------------------------------------------------------------ ------------ Revista is a simple spanish PHP magazine editor It was done by phporgmx It ...
php-revista <= 112 Remote SQL Injection Exploit Found by & contact : Cold z3ro , cold-z3ro@hotmailcom script : downloadssourceforgenet/php-revista/revista-112tgz?modtime=1025654400&big_mirror=0 Exploits : ============================================================================== Http://wwwVictem0/revista/estilo/ ...