CVE Vulnerabilities

CVE-2006-4957

Published: Sep 23, 2006 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in the GetMember function in functions.php in MyReview 1.9.4 allows remote attackers to execute arbitrary SQL commands via the email parameter to Admin.php.

Affected Software

Name Vendor Start Version End Version
Myreview The_myreview_system 1.9.4 (including) 1.9.4 (including)

References