Vulnerabilities > CVE-2006-2202 - SQL Injection vulnerability in Invision Power Services Invision Gallery 2.0.6
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
NONE Summary
SQL injection vulnerability in post.php in Invision Gallery 2.0.6 allows remote attackers to execute arbitrary SQL commands via the album parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://secunia.com/advisories/19948
- http://securityreason.com/securityalert/841
- http://securitytracker.com/id?1016019
- http://www.osvdb.org/25231
- http://www.securityfocus.com/archive/1/432731/100/0/threaded
- http://www.securityfocus.com/archive/1/432952/100/0/threaded
- http://www.securityfocus.com/bid/17793
- http://www.vupen.com/english/advisories/2006/1655
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26224