cvelist/2006/6xxx/CVE-2006-6478.json
2018-10-17 17:05:08 -04:00

88 lines
2.6 KiB
JSON

{
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2006-6478",
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
"data_version" : "4.0",
"description" : {
"description_data" : [
{
"lang" : "eng",
"value" : "Multiple SQL injection vulnerabilities in AnnonceScriptHP 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in (a) email.php, the (2) no parameter in (b) voirannonce.php, the (3) idmembre parameter in (c) admin/admin_membre/fiche_membre.php, and the (4) idannonce parameter in (d) admin/admin_annonce/okvalannonce.php and (e) admin/admin_annonce/changeannonce.php."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"name" : "20061209 AnnonceScriptHP V2.0 Multiple Vulnerabilities",
"refsource" : "BUGTRAQ",
"url" : "http://www.securityfocus.com/archive/1/453966/100/0/threaded"
},
{
"name" : "21514",
"refsource" : "BID",
"url" : "http://www.securityfocus.com/bid/21514"
},
{
"name" : "ADV-2006-4940",
"refsource" : "VUPEN",
"url" : "http://www.vupen.com/english/advisories/2006/4940"
},
{
"name" : "23318",
"refsource" : "SECUNIA",
"url" : "http://secunia.com/advisories/23318"
},
{
"name" : "2019",
"refsource" : "SREASON",
"url" : "http://securityreason.com/securityalert/2019"
},
{
"name" : "annoncescripthp-multiple-sql-injection(30803)",
"refsource" : "XF",
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/30803"
}
]
}
}