Vulnerabilities > CVE-2006-3950 - Unspecified vulnerability in X-Scripts X-Statistics 1.20
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
SQL injection vulnerability in x-statistics.php in X-Scripts X-Statistics 1.20 allows remote attackers to execute arbitrary SQL commands via the User-Agent HTTP header.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://archives.neohapsis.com/archives/fulldisclosure/2006-07/0722.html
- http://archives.neohapsis.com/archives/fulldisclosure/2006-07/0722.html
- http://secunia.com/advisories/21281
- http://secunia.com/advisories/21281
- http://www.osvdb.org/27636
- http://www.osvdb.org/27636
- http://www.securityfocus.com/bid/19237
- http://www.securityfocus.com/bid/19237
- http://www.vupen.com/english/advisories/2006/3059
- http://www.vupen.com/english/advisories/2006/3059
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28087
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28087