Vulnerabilities > CVE-2006-3322 - SQL Injection vulnerability in Spiffyjr PHPraid 3.0.5

047910
CVSS 5.1 - MEDIUM
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
high complexity
spiffyjr

Summary

SQL injection vulnerability in includes/functions_logging.php in phpRaid 3.0.5, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the log_hack function.

Vulnerable Configurations

Part Description Count
Application
Spiffyjr
1