CVE Vulnerabilities

CVE-2006-1954

Published: Apr 21, 2006 | Modified: Oct 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in authent.php4 in Nicolas Fischer (aka NFec) RechnungsZentrale V2 1.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the User field.

Affected Software

Name Vendor Start Version End Version
Rechnungszentrale Nfec.de v2_1.1.3 (including) v2_1.1.3 (including)

References