HIGH
SQL injection vulnerability in login.php in aoblogger 2.3 allows remote attackers to execute arbitrary SQL commands via the username parameter
Published Jan 19, 2006
7.5
HIGHCVSS 2.0
EPSS 1.87%
Description
SQL injection vulnerability in login.php in aoblogger 2.3 allows remote attackers to execute arbitrary SQL commands via the username parameter.
Affected products
No data.
- 2.3
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (9)
- http://archives.neohapsis.com/archives/bugtraq/2006-01/0322.html mailing-listx_refsource_BUGTRAQ
- http://evuln.com/vulns/37/summary.html x_refsource_MISCExploitVendor Advisory
- http://mikeheltonisawesome.com/viewcomments.php?idd=46 x_refsource_CONFIRMURL Repurposed
- http://secunia.com/advisories/16889 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.osvdb.org/22527 vdb-entryx_refsource_OSVDB
- http://www.securityfocus.com/bid/16286 vdb-entryx_refsource_BIDExploit
- http://www.vupen.com/english/advisories/2006/0240 vdb-entryx_refsource_VUPEN
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-0318 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24142 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://archives.neohapsis.com/archives/bugtraq/2006-01/0322.html | mailing-listx_refsource_BUGTRAQ | |
| http://evuln.com/vulns/37/summary.html | x_refsource_MISCExploitVendor Advisory | |
| http://mikeheltonisawesome.com/viewcomments.php?idd=46 | x_refsource_CONFIRMURL Repurposed | |
| http://secunia.com/advisories/16889 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://www.osvdb.org/22527 | vdb-entryx_refsource_OSVDB | |
| http://www.securityfocus.com/bid/16286 | vdb-entryx_refsource_BIDExploit | |
| http://www.vupen.com/english/advisories/2006/0240 | vdb-entryx_refsource_VUPEN | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-0318 | Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/24142 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jan 19, 2006
Updated Aug 7, 2024
Reserved Jan 19, 2006
Link CVE-2006-0311
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2006-0318 Assigner mitre
Published Jan 19, 2006
Updated Aug 7, 2024
Exploited since n/a
Link EUVD-2006-0318