Lucene search

K
cve[email protected]CVE-2006-6220
HistoryDec 01, 2006 - 1:28 a.m.

CVE-2006-6220

2006-12-0101:28:00
web.nvd.nist.gov
18
sql injection
vulnerabilities
recipes website
remote attackers
arbitrary sql commands
nvd

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

8.9 High

AI Score

Confidence

Low

0.007 Low

EPSS

Percentile

80.6%

Multiple SQL injection vulnerabilities in Recipes Website (Recipes Complete Website) 1.1.14 allow remote attackers to execute arbitrary SQL commands via the (1) recipeid parameter to recipe.php or the (2) categoryid parameter to list.php.

Affected configurations

NVD
Node
recipes_complete_websiterecipes_complete_websiteMatch1.1.14

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

8.9 High

AI Score

Confidence

Low

0.007 Low

EPSS

Percentile

80.6%

Related for CVE-2006-6220