CVE Vulnerabilities

CVE-2006-0313

Published: Jan 19, 2006 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Multiple SQL injection vulnerabilities in PDFdirectory before 1.0 allow remote attackers to execute arbitrary SQL commands via multiple unspecified vectors involving (1) util.php, (2) userpref.php, (3) user.php, (4) uploadfrm.php, (5) title.php, (6) team.php, (7) stats.php, (8) page.php, (9) org.php, (10) member.php, (11) index.php, (12) group.php, or (13) anniv.php.

Affected Software

Name Vendor Start Version End Version
Pdfdirectory Pdfdirectory 0.2.2 (including) 0.2.2 (including)
Pdfdirectory Pdfdirectory 0.2.3 (including) 0.2.3 (including)
Pdfdirectory Pdfdirectory 0.2.4 (including) 0.2.4 (including)
Pdfdirectory Pdfdirectory 0.2.5 (including) 0.2.5 (including)
Pdfdirectory Pdfdirectory 0.2.6 (including) 0.2.6 (including)
Pdfdirectory Pdfdirectory 0.2.7 (including) 0.2.7 (including)
Pdfdirectory Pdfdirectory 0.2.8 (including) 0.2.8 (including)
Pdfdirectory Pdfdirectory 0.2.9 (including) 0.2.9 (including)
Pdfdirectory Pdfdirectory 0.2.10 (including) 0.2.10 (including)
Pdfdirectory Pdfdirectory 0.2.11 (including) 0.2.11 (including)

References