Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-1561

Overview

Vulnerability Score 5.1 5.1
CVE Id CVE-2006-1561
Last Modified 07 Mar 2011 09:33:18
Published 31 Mar 2006 06:06:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity HIGH
Authentication NONE

CVE-2006-1561

Summary

SQL injection vulnerability in index.php in vscripts (aka Kuba Kunkiewicz) [V]Book (aka VBook) 2.0 allows remote attackers to execute arbitrary SQL commands via the x parameter.

Vulnerable Systems

Application

  • Vscripts Vbook 2.0


References

VUPEN - ADV-2006-1174

MISC - http://evuln.com/vulns/111

XF - vbook-index-sql-injection(25519)

BID - 17320

BUGTRAQ - 20060411 [eVuln] [V]Book Multiple Vulnerabilities

OSVDB - 24270

SREASON - 696

SECUNIA - 19448


Last Updated: 27 May 2016 10:42:06