Lucene search

K
cveMitreCVE-2006-1333
HistoryMar 21, 2006 - 1:06 a.m.

CVE-2006-1333

2006-03-2101:06:00
mitre
web.nvd.nist.gov
25
cve-2006-1333
sql injection
betaparticle blog 6.0
security vulnerability
nvd

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

AI Score

8.6

Confidence

Low

EPSS

0.007

Percentile

80.0%

Multiple SQL injection vulnerabilities in BetaParticle Blog 6.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to template_permalink.asp or (2) fldGalleryID parameter to template_gallery_detail.asp.

Affected configurations

Nvd
Node
betaparticlebetaparticle_blogMatch3.0
OR
betaparticlebetaparticle_blogMatch4.0
OR
betaparticlebetaparticle_blogMatch5.0
OR
betaparticlebetaparticle_blogMatch6.0
VendorProductVersionCPE
betaparticlebetaparticle_blog3.0cpe:2.3:a:betaparticle:betaparticle_blog:3.0:*:*:*:*:*:*:*
betaparticlebetaparticle_blog4.0cpe:2.3:a:betaparticle:betaparticle_blog:4.0:*:*:*:*:*:*:*
betaparticlebetaparticle_blog5.0cpe:2.3:a:betaparticle:betaparticle_blog:5.0:*:*:*:*:*:*:*
betaparticlebetaparticle_blog6.0cpe:2.3:a:betaparticle:betaparticle_blog:6.0:*:*:*:*:*:*:*

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

AI Score

8.6

Confidence

Low

EPSS

0.007

Percentile

80.0%

Related for CVE-2006-1333