Vulnerabilities > CVE-2006-3065 - Unspecified vulnerability in Blursoft Blur6Ex 0.3.462

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
blursoft
exploit available

Summary

SQL injection vulnerability in engine/shards/blog.php in blur6ex 0.3.462 allows remote attackers to execute arbitrary SQL commands via the ID parameter in a proc_reply action in the blog shard. NOTE: This is a similar vulnerability to CVE-2006-1763, but the affected code and versions are different.

Vulnerable Configurations

Part Description Count
Application
Blursoft
1

Exploit-Db

descriptionblur6ex <= 0.3.462 (ID) Admin Disclosure / Blind SQL Injection Exploit. CVE-2006-3065. Webapps exploit for php platform
fileexploits/php/webapps/1904.php
idEDB-ID:1904
last seen2016-01-31
modified2006-06-12
platformphp
port
published2006-06-12
reporterrgod
sourcehttps://www.exploit-db.com/download/1904/
titleblur6ex <= 0.3.462 ID Admin Disclosure / Blind SQL Injection Exploit
typewebapps