Vulnerabilities > CVE-2006-0345 - Unspecified vulnerability in Saral Kaushik Saralblog 1.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN saral-kaushik
exploit available
Summary
Multiple SQL injection vulnerabilities in SaralBlog 1.0 allow remote attackers to execute arbitrary SQL commands via the search parameter to search.php. NOTE: the id/viewprofile.php issue is already covered by CVE-2005-4058.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | SaralBlog 1.0 Multiple Input Validation Vulnerabilities. CVE-2006-0345. Webapps exploit for php platform |
id | EDB-ID:27112 |
last seen | 2016-02-03 |
modified | 2006-01-18 |
published | 2006-01-18 |
reporter | Aliaksandr Hartsuyeu |
source | https://www.exploit-db.com/download/27112/ |
title | SaralBlog 1.0 - Multiple Input Validation Vulnerabilities |
References
- http://archives.neohapsis.com/archives/bugtraq/2006-01/0372.html
- http://archives.neohapsis.com/archives/bugtraq/2006-01/0372.html
- http://evuln.com/vulns/40/summary.html
- http://evuln.com/vulns/40/summary.html
- http://securitytracker.com/id?1015517
- http://securitytracker.com/id?1015517
- http://www.osvdb.org/22740
- http://www.osvdb.org/22740
- http://www.securityfocus.com/bid/16306
- http://www.securityfocus.com/bid/16306
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24218
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24218