Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-1001

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2006-1001
Last Modified 07 Mar 2011 09:31:33
Published 06 Mar 2006 03:06:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2006-1001

Summary

SQL injection vulnerability in the board module in LanSuite LanParty Intranet System 2.0.6 and 2.1.0 beta allows remote attackers to execute arbitrary SQL commands via the fid parameter.

Vulnerable Systems

Application

  • Lansuite Lanparty Intranet System 2.0.6

  • Lansuite Lanparty Intranet System 2.1


References

VUPEN - ADV-2006-0747

BID - 16836

SECUNIA - 19048

XF - lansuite-fid-sql-injection(24940)

OSVDB - 23533

MILW0RM - 1526


Last Updated: 27 May 2016 10:41:52