HIGH
SQL injection vulnerability in DSPoll 1.1 allows remote attackers to execute arbitrary SQL commands via the pollid parameter to (1) results.php, (2) topolls.php, (3) pollit.php
Published Mar 14, 2006
7.5
HIGHCVSS 2.0
EPSS 1.90%
Description
SQL injection vulnerability in DSPoll 1.1 allows remote attackers to execute arbitrary SQL commands via the pollid parameter to (1) results.php, (2) topolls.php, (3) pollit.php.
Affected products
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (12)
- http://evuln.com/vulns/96/summary.html x_refsource_MISCVendor Advisory
- http://secunia.com/advisories/19209 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://securityreason.com/securityalert/620 third-party-advisoryx_refsource_SREASON
- http://securityreason.com/securityalert/622 third-party-advisoryx_refsource_SREASON
- http://securitytracker.com/id?1015758 vdb-entryx_refsource_SECTRACK
- http://www.osvdb.org/23879 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23880 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23881 vdb-entryx_refsource_OSVDB
- http://www.securityfocus.com/archive/1/428663/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/17103 vdb-entryx_refsource_BID
- http://www.vupen.com/english/advisories/2006/0932 vdb-entryx_refsource_VUPEN
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25192 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://evuln.com/vulns/96/summary.html | x_refsource_MISCVendor Advisory | |
| http://secunia.com/advisories/19209 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://securityreason.com/securityalert/620 | third-party-advisoryx_refsource_SREASON | |
| http://securityreason.com/securityalert/622 | third-party-advisoryx_refsource_SREASON | |
| http://securitytracker.com/id?1015758 | vdb-entryx_refsource_SECTRACK | |
| http://www.osvdb.org/23879 | vdb-entryx_refsource_OSVDB | |
| http://www.osvdb.org/23880 | vdb-entryx_refsource_OSVDB | |
| http://www.osvdb.org/23881 | vdb-entryx_refsource_OSVDB | |
| http://www.securityfocus.com/archive/1/428663/100/0/threaded | mailing-listx_refsource_BUGTRAQ | |
| http://www.securityfocus.com/bid/17103 | vdb-entryx_refsource_BID | |
| http://www.vupen.com/english/advisories/2006/0932 | vdb-entryx_refsource_VUPEN | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/25192 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 14, 2006
Updated Aug 7, 2024
Reserved Mar 14, 2006
Link CVE-2006-1217
CISA Vulnrichment
Updated n/a