SQL injection vulnerability in search.php in Sphider before 1.3.1c allows remote attackers to execute arbitrary SQL commands via the category parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: this issue might be primary to CVE-2006-2506.2.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sphider | Sphider | * | 1.3b (including) |