Vulnerabilities > CVE-2006-4606 - Unspecified vulnerability in Longino Jacome PHP-Revista 1.1.2
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN longino
exploit available
Summary
Multiple SQL injection vulnerabilities in Longino Jacome php-Revista 1.1.2 allow remote attackers to execute arbitrary SQL commands via the (1) id_temas parameter in busqueda_tema.php, the (2) cadena parameter in busqueda.php, the (3) id_autor parameter in autor.php, the (4) email parameter in lista.php, and the (5) id_articulo parameter in articulo.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description PHP-Revista 1.1.2 (RFI/SQLi/CB/XSS) Multiple Remote Vulnerabilities. CVE-2006-4605,CVE-2006-4606,CVE-2006-4607,CVE-2006-4608. Webapps exploit for php platform file exploits/php/webapps/8425.txt id EDB-ID:8425 last seen 2016-02-01 modified 2009-04-14 platform php port published 2009-04-14 reporter SirDarckCat source https://www.exploit-db.com/download/8425/ title php-revista 1.1.2 rfi/sqli/cb/XSS Multiple Vulnerabilities type webapps id EDB-ID:3538
References
- http://secunia.com/advisories/21738
- http://secunia.com/advisories/21738
- http://securityreason.com/securityalert/1499
- http://securityreason.com/securityalert/1499
- http://www.attrition.org/pipermail/vim/2009-April/002167.html
- http://www.attrition.org/pipermail/vim/2009-April/002167.html
- http://www.osvdb.org/28445
- http://www.osvdb.org/28445
- http://www.osvdb.org/28446
- http://www.osvdb.org/28446
- http://www.osvdb.org/28447
- http://www.osvdb.org/28447
- http://www.osvdb.org/28448
- http://www.osvdb.org/28448
- http://www.osvdb.org/28451
- http://www.osvdb.org/28451
- http://www.osvdb.org/28452
- http://www.osvdb.org/28452
- http://www.securityfocus.com/archive/1/445007/100/0/threaded
- http://www.securityfocus.com/archive/1/445007/100/0/threaded
- http://www.securityfocus.com/archive/1/502637/100/0/threaded
- http://www.securityfocus.com/archive/1/502637/100/0/threaded
- http://www.securityfocus.com/bid/19818
- http://www.securityfocus.com/bid/19818
- http://www.securityfocus.com/bid/23079
- http://www.securityfocus.com/bid/23079
- https://www.exploit-db.com/exploits/3538
- https://www.exploit-db.com/exploits/3538
- https://www.exploit-db.com/exploits/8425
- https://www.exploit-db.com/exploits/8425