Описание
SQL injection vulnerability in D2KBlog 1.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the memName parameter in a cookie.
SQL injection vulnerability in D2KBlog 1.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the memName parameter in a cookie.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-1123
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25215
- http://secunia.com/advisories/19177
- http://securityreason.com/securityalert/559
- http://www.osvdb.org/23770
- http://www.securityfocus.com/archive/1/427103/100/0/threaded
- http://www.securityfocus.com/bid/17035
- http://www.vupen.com/english/advisories/2006/0896
EPSS
Процентиль: 84%
0.02298
Низкий
CVE ID
Связанные уязвимости
nvd
почти 20 лет назад
SQL injection vulnerability in D2KBlog 1.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the memName parameter in a cookie.
EPSS
Процентиль: 84%
0.02298
Низкий