Vulnerabilities > CVE-2006-4879 - Input Validation vulnerability in PHP-Post

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
david-bennett

Summary

SQL injection vulnerability in profile.php in David Bennett PHP-Post (PHPp) 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter.

Vulnerable Configurations

Part Description Count
Application
David_Bennett
1