CVE-2006-3283
Summary
| CVE | CVE-2006-3283 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-06-28 22:05:00 UTC |
| Updated | 2018-10-18 16:46:00 UTC |
| Description | SQL injection vulnerability in Dating Agent PRO 4.7.1 allows remote attackers to execute arbitrary SQL commands via the (1) pid parameter in picture.php, (2) mid parameter in mem.php, and the (3) sex and (4) relationship parameters in search.php. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Datetopia | Dating Agent Pro | 4.7.1 | All | All | All |
| Application | Datetopia | Dating Agent Pro | 4.7.1 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| SecurityReason - Dating Agent PRO 4.7.1 Vulnerability | SREASON | securityreason.com | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.