Vulnerabilities > CVE-2006-0870 - Unspecified vulnerability in Mini-Nuke CMS
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN mini-nuke
exploit available
Summary
SQL injection vulnerability in pages.asp in Mini-Nuke CMS System 1.8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: version 2.3 was later reported to be vulnerable as well.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | MiniNuke <= 1.8.2b (pages.asp) Remote SQL Injection Exploit. CVE-2006-0870. Webapps exploit for asp platform |
id | EDB-ID:1514 |
last seen | 2016-01-31 |
modified | 2006-02-19 |
published | 2006-02-19 |
reporter | nukedx |
source | https://www.exploit-db.com/download/1514/ |
title | MiniNuke <= 1.8.2b pages.asp Remote SQL Injection Exploit |
References
- http://secunia.com/advisories/18439
- http://secunia.com/advisories/18439
- http://www.nukedx.com/?viewdoc=9
- http://www.nukedx.com/?viewdoc=9
- http://www.osvdb.org/23438
- http://www.osvdb.org/23438
- http://www.securityfocus.com/archive/1/425599/100/0/threaded
- http://www.securityfocus.com/archive/1/425599/100/0/threaded
- http://www.securityfocus.com/archive/1/428361/100/0/threaded
- http://www.securityfocus.com/archive/1/428361/100/0/threaded
- http://www.securityfocus.com/archive/1/431602/100/0/threaded
- http://www.securityfocus.com/archive/1/431602/100/0/threaded
- http://www.securityfocus.com/archive/1/431714/100/0/threaded
- http://www.securityfocus.com/archive/1/431714/100/0/threaded
- http://www.securityfocus.com/bid/16730
- http://www.securityfocus.com/bid/16730
- http://www.securityfocus.com/bid/17636
- http://www.securityfocus.com/bid/17636
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24803
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24803