2024-12-08 03:06:42 +00:00

93 lines
3.1 KiB
JSON

{
"id": "CVE-2006-3096",
"sourceIdentifier": "cve@mitre.org",
"published": "2006-06-19T21:02:00.000",
"lastModified": "2024-11-21T00:12:48.873",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Multiple SQL injection vulnerabilities in iPostMX 2005 2.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) forum parameter in messagepost.cfm and (2) topic parameter in topics.cfm. NOTE: this item was created based on information in a blog entry that was apparently removed after CVE analysis. As of 20060619, CVE is attempting to determine the cause of the removal."
},
{
"lang": "es",
"value": "M\u00faltiples vulnerabilidades de inyecci\u00f3n SQL en iPostMX 2005 v2.0 y versiones anteriores permite a atacantes remotos ejecutar comandos SQL a trav\u00e9s de (1) el par\u00e1metro forum en messagepost.cfm y (2) el par\u00e1metro topic en topics.cfm. NOTA: esta entrada fue creada a partir de la informaci\u00f3n recabada en un blog que ha sido eliminado, aparentemente despu\u00e9s de un an\u00e1lisis de CVE. Desde el 19/06/2006, CVE est\u00e1 tratando de determinar la causa de la eliminaci\u00f3n."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
"baseScore": 7.5,
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL"
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": true,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:ipostmx:ipostmx_2005:*:*:*:*:*:*:*:*",
"versionEndIncluding": "2.0",
"matchCriteriaId": "A2159A1D-4350-449C-9B3B-2263E1708B64"
}
]
}
]
}
],
"references": [
{
"url": "http://pridels0.blogspot.com/2006/06/ipostmx-2005-vuln.html",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/27144",
"source": "cve@mitre.org"
},
{
"url": "http://pridels0.blogspot.com/2006/06/ipostmx-2005-vuln.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/27144",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
]
}