Lucene search

K
cveMitreCVE-2006-0137
HistoryJan 09, 2006 - 11:03 a.m.

CVE-2006-0137

2006-01-0911:03:00
mitre
web.nvd.nist.gov
102
cve-2006-0137
sql injection
linkcategory.php
phanatic software
chimera web portal system 0.2
nvd

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.3

Confidence

Low

EPSS

0.011

Percentile

84.7%

SQL injection vulnerability in linkcategory.php in Phanatic Softwares Chimera Web Portal System 0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.

Affected configurations

Nvd
Node
phanatic_softwareschimera_web_portalMatch0.2
VendorProductVersionCPE
phanatic_softwareschimera_web_portal0.2cpe:2.3:a:phanatic_softwares:chimera_web_portal:0.2:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.3

Confidence

Low

EPSS

0.011

Percentile

84.7%