HIGH
SQL injection vulnerability in PCPIN Chat 5.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the username field (login parameter) to main.php
Published Apr 21, 2006
7.5
HIGHCVSS 2.0
EPSS 1.51%
Description
SQL injection vulnerability in PCPIN Chat 5.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the username field (login parameter) to main.php.
Affected products
No data.
OR
- 3.1.5
- 3.1.6
- 3.1.7r
- 3.2.0
- 3.2.1
- 3.2.3
- 4.0
- 5.0.1
- 5.0.2
- 5.0.3
- 5.0.4
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (9)
- http://retrogod.altervista.org/pcpin_504_xpl.html x_refsource_MISCExploit
- http://secunia.com/advisories/19708 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://securitytracker.com/id?1015968 vdb-entryx_refsource_SECTRACK
- http://www.securityfocus.com/archive/1/431390/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/436029/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/17632 vdb-entryx_refsource_BIDExploit
- http://www.vupen.com/english/advisories/2006/1441 vdb-entryx_refsource_VUPENVendor Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-1962 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25961 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://retrogod.altervista.org/pcpin_504_xpl.html | x_refsource_MISCExploit | |
| http://secunia.com/advisories/19708 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://securitytracker.com/id?1015968 | vdb-entryx_refsource_SECTRACK | |
| http://www.securityfocus.com/archive/1/431390/100/0/threaded | mailing-listx_refsource_BUGTRAQ | |
| http://www.securityfocus.com/archive/1/436029/100/0/threaded | mailing-listx_refsource_BUGTRAQ | |
| http://www.securityfocus.com/bid/17632 | vdb-entryx_refsource_BIDExploit | |
| http://www.vupen.com/english/advisories/2006/1441 | vdb-entryx_refsource_VUPENVendor Advisory | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-1962 | Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/25961 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Apr 21, 2006
Updated Aug 7, 2024
Reserved Apr 21, 2006
Link CVE-2006-1962
CISA Vulnrichment
No data
Red Hat
No data
GitHub
No data