Vulnerabilities > CVE-2006-0835 - SQL Injection vulnerability in Web Calendar Pro Dropbase.PHP

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
mitridat
exploit available

Summary

SQL injection vulnerability in dropbase.php in MitriDAT Web Calendar Pro allows remote attackers to modify internal SQL queries and cause a denial of service (inaccessible database) via the tabls parameter.

Vulnerable Configurations

Part Description Count
Application
Mitridat
1

Exploit-Db

descriptionWeb Calendar Pro Dropbase.PHP SQL Injection Vulnerability. CVE-2006-0835. Webapps exploit for php platform
idEDB-ID:27298
last seen2016-02-03
modified2006-02-23
published2006-02-23
reporterReZEN
sourcehttps://www.exploit-db.com/download/27298/
titleWeb Calendar Pro Dropbase.PHP SQL Injection Vulnerability