Vulnerabilities > CVE-2006-4606 - Unspecified vulnerability in Longino Jacome PHP-Revista 1.1.2

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
longino
exploit available

Summary

Multiple SQL injection vulnerabilities in Longino Jacome php-Revista 1.1.2 allow remote attackers to execute arbitrary SQL commands via the (1) id_temas parameter in busqueda_tema.php, the (2) cadena parameter in busqueda.php, the (3) id_autor parameter in autor.php, the (4) email parameter in lista.php, and the (5) id_articulo parameter in articulo.php.

Vulnerable Configurations

Part Description Count
Application
Longino
1

Exploit-Db

  • descriptionPHP-Revista 1.1.2 (RFI/SQLi/CB/XSS) Multiple Remote Vulnerabilities. CVE-2006-4605,CVE-2006-4606,CVE-2006-4607,CVE-2006-4608. Webapps exploit for php platform
    fileexploits/php/webapps/8425.txt
    idEDB-ID:8425
    last seen2016-02-01
    modified2009-04-14
    platformphp
    port
    published2009-04-14
    reporterSirDarckCat
    sourcehttps://www.exploit-db.com/download/8425/
    titlephp-revista 1.1.2 rfi/sqli/cb/XSS Multiple Vulnerabilities
    typewebapps
  • idEDB-ID:3538