CVE-2006-6706

SQL injection vulnerability in Soumu Workflow for Groupmax 01-00 through 01-01, Soumu Workflow 02-00 through 03-03, and Koukyoumuke Soumu Workflow 01-00 through 01-01 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors in certain web pages.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:soumu:koukyoumuke_soumu_workflow:01-00:*:*:*:*:*:*:*
cpe:2.3:a:soumu:koukyoumuke_soumu_workflow:01-01:*:*:*:*:*:*:*
cpe:2.3:a:soumu:soumo_workflow:01_00:*:*:*:*:*:*:*
cpe:2.3:a:soumu:soumo_workflow:01_01:*:*:*:*:*:*:*
cpe:2.3:a:soumu:soumu_workflow:02-00:*:*:*:*:*:*:*
cpe:2.3:a:soumu:soumu_workflow:02-01:*:*:*:*:*:*:*
cpe:2.3:a:soumu:soumu_workflow:03-03:*:*:*:*:*:*:*

History

21 Nov 2024, 00:23

Type Values Removed Values Added
References () http://secunia.com/advisories/23399 - Vendor Advisory () http://secunia.com/advisories/23399 - Vendor Advisory
References () http://www.hitachi-support.com/security_e/vuls_e/HS06-016_e/01-e.html - () http://www.hitachi-support.com/security_e/vuls_e/HS06-016_e/01-e.html -
References () http://www.vupen.com/english/advisories/2006/5114 - () http://www.vupen.com/english/advisories/2006/5114 -

Information

Published : 2006-12-23 01:28

Updated : 2024-11-21 00:23


NVD link : CVE-2006-6706

Mitre link : CVE-2006-6706

CVE.ORG link : CVE-2006-6706


JSON object : View

Products Affected

soumu

  • soumu_workflow
  • soumo_workflow
  • koukyoumuke_soumu_workflow
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')