Vulnerabilities > CVE-2006-3919 - Input Validation vulnerability in SD Studio CMS

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
sd-studio

Summary

SQL injection vulnerability in index.php in SD Studio CMS allows remote attackers to execute arbitrary SQL commands via the (1) news_id, (2) tid, and (3) page_id parameters.

Vulnerable Configurations

Part Description Count
Application
Sd_Studio
1