CVE Vulnerabilities

CVE-2006-4957

Published: Sep 23, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in the GetMember function in functions.php in MyReview 1.9.4 allows remote attackers to execute arbitrary SQL commands via the email parameter to Admin.php.

Affected Software

Name Vendor Start Version End Version
Myreview The_myreview_system 1.9.4 (including) 1.9.4 (including)

References