CVE Vulnerabilities

CVE-2006-6369

Published: Dec 07, 2006 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

SQL injection vulnerability in lib/entry_reply_entry.php in Invision Community Blog Mod 1.2.4 allows remote attackers to execute arbitrary SQL commands via the eid parameter, when accessed through the Preview message functionality.

Affected Software

NameVendorStart VersionEnd Version
Invision_community_blogInvision_power_services1.2.4 (including)1.2.4 (including)

References