CVE-2006-2980
Summary
| CVE | CVE-2006-2980 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-06-12 22:02:00 UTC |
| Updated | 2017-07-20 01:31:00 UTC |
| Description | SQL injection vulnerability in block_forum_topic_new.php in ViArt Shop Free 2.5.5, and possibly other distributions including Light, Standard, and Enterprise, might allow remote attackers to execute arbitrary SQL commands via unknown vectors, probably involving the forum_id parameter. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Viart Ltd | Viart Shop Free | 2.5.5_enterprise | All | All | All |
| Application | Viart Ltd | Viart Shop Free | 2.5.5_light | All | All | All |
| Application | Viart Ltd | Viart Shop Free | 2.5.5_standard | All | All | All |
| Application | Viart Ltd | Viart Shop Free | 2.5.5_enterprise | All | All | All |
| Application | Viart Ltd | Viart Shop Free | 2.5.5_light | All | All | All |
| Application | Viart Ltd | Viart Shop Free | 2.5.5_standard | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| cpa-offer.com | CONFIRM | www.codetosell.com | |
| [VIM] verify of ViArt Shop Free 2.5.5 issue (diff digging) | VIM | www.attrition.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.