Vulnerabilities > CVE-2006-3054 - Unspecified vulnerability in Vbzoom 1.11
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Multiple SQL injection vulnerabilities in VBZooM 1.11 allow remote attackers to execute arbitrary SQL commands via the (1) sobjectID or (2) MAINID parameters to (a) show.php or (3) MainID parameter to (b) subject.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://www.securityfocus.com/archive/1/436938/100/0/threaded
- http://www.securityfocus.com/archive/1/436938/100/0/threaded
- http://www.securityfocus.com/archive/1/436940/100/0/threaded
- http://www.securityfocus.com/archive/1/436940/100/0/threaded
- http://www.securityfocus.com/bid/18403
- http://www.securityfocus.com/bid/18403
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27070
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27070