Lucene search

K
cve[email protected]CVE-2006-6667
HistoryDec 20, 2006 - 11:28 p.m.

CVE-2006-6667

2006-12-2023:28:00
web.nvd.nist.gov
17
cve
2006
6667
sql injection
verliadmin
remote attackers
arbitrary commands
repass.php
verify.php

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8.6 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

51.3%

Multiple SQL injection vulnerabilities in VerliAdmin 0.3 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) nick_mod or (2) nick parameter to (a) repass.php or (b) verify.php. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

Affected configurations

NVD
Node
verliadminverliadminRange0.3
CPENameOperatorVersion
verliadmin:verliadminverliadminle0.3

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8.6 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

51.3%

Related for CVE-2006-6667