CVE-2006-4632
Summary
| CVE | CVE-2006-4632 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-09-08 20:04:00 UTC |
| Updated | 2018-10-17 21:38:00 UTC |
| Description | Multiple SQL injection vulnerabilities in SoftBB 0.1, and possibly earlier, allow remote attackers to execute arbitrary SQL commands via the (1) groupe parameter in addmembre.php and the (2) select parameter in moveto.php. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| 28578 | OSVDB | www.osvdb.org | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| new.fr is available for purchase - Sedo.com | MISC | acid-root.new.fr | |
| SecurityTracker.com Archives - SoftBB Lets Remote Users Inject SQL Commands and Execute Arbitrary Code | SECTRACK | securitytracker.com | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| SoftBB SQL and PHP Code Injection Vulnerabilities - Advisories - Secunia | SECUNIA | secunia.com | |
| 28577 | OSVDB | www.osvdb.org | |
| SecurityReason - SoftBB 0.1 Remote PHP Code Execution Exploit | SREASON | securityreason.com | |
| SoftBB 0.1 - 'cmd' Remote Command Execution - PHP webapps Exploit | EXPLOIT-DB | www.exploit-db.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.