CVE Vulnerabilities

CVE-2006-4957

Published: Sep 23, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

SQL injection vulnerability in the GetMember function in functions.php in MyReview 1.9.4 allows remote attackers to execute arbitrary SQL commands via the email parameter to Admin.php.

Affected Software

NameVendorStart VersionEnd Version
MyreviewThe_myreview_system1.9.4 (including)1.9.4 (including)

References