Описание
SQL injection vulnerability in index.php in SWSoft Confixx 3.0.6, 3.0.8, and 3.1.2 allows remote attackers to execute arbitrary SQL commands via the SID parameter.
SQL injection vulnerability in index.php in SWSoft Confixx 3.0.6, 3.0.8, and 3.1.2 allows remote attackers to execute arbitrary SQL commands via the SID parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-1754
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25749
- http://download1.swsoft.com/Confixx/security_hotfix/release_notes.txt
- http://secunia.com/advisories/19611
- http://www.securityfocus.com/archive/1/430671/100/0/threaded
- http://www.securityfocus.com/archive/1/430890/100/0/threaded
- http://www.securityfocus.com/archive/1/431421/100/0/threaded
- http://www.securityfocus.com/bid/17476
- http://www.vupen.com/english/advisories/2006/1331
EPSS
Процентиль: 79%
0.01238
Низкий
CVE ID
Связанные уязвимости
nvd
почти 20 лет назад
SQL injection vulnerability in index.php in SWSoft Confixx 3.0.6, 3.0.8, and 3.1.2 allows remote attackers to execute arbitrary SQL commands via the SID parameter.
EPSS
Процентиль: 79%
0.01238
Низкий