CVE Vulnerabilities

CVE-2006-4957

Published: Sep 23, 2006 | Modified: Oct 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in the GetMember function in functions.php in MyReview 1.9.4 allows remote attackers to execute arbitrary SQL commands via the email parameter to Admin.php.

Affected Software

Name Vendor Start Version End Version
Myreview The_myreview_system 1.9.4 (including) 1.9.4 (including)

References