Multiple SQL injection vulnerabilities in OmniStar Article Manager allow remote attackers to execute arbitrary SQL commands via the (1) article_id parameter in (a) articles/comments.php and (b) articles/article.php, and the (2) page_id parameter in (c) articles/pages.php.
References
Configurations
History
21 Nov 2024, 00:21
Type | Values Removed | Values Added |
---|---|---|
References | () http://s-a-p.ca/index.php?page=OurAdvisories&id=10 - Exploit, URL Repurposed | |
References | () http://secunia.com/advisories/22794 - Vendor Advisory | |
References | () http://securityreason.com/securityalert/1865 - | |
References | () http://securitytracker.com/id?1017208 - | |
References | () http://www.securityfocus.com/archive/1/451045/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/20990 - | |
References | () http://www.vupen.com/english/advisories/2006/4449 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/30166 - |
14 Feb 2024, 01:17
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) http://s-a-p.ca/index.php?page=OurAdvisories&id=10 - Exploit, URL Repurposed |
Information
Published : 2006-11-15 15:07
Updated : 2024-11-21 00:21
NVD link : CVE-2006-5917
Mitre link : CVE-2006-5917
CVE.ORG link : CVE-2006-5917
JSON object : View
Products Affected
omnistar_interactive
- omnistar_article_manager
CWE