CVE Vulnerabilities

CVE-2006-7088

Published: Mar 02, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Multiple SQL injection vulnerabilities in Simple PHP Forum before 0.4 allow remote attackers to execute arbitrary SQL commands via the username parameter to (1) logon_user.php and (2) update_profile.php.

Affected Software

NameVendorStart VersionEnd Version
Simple_php_forumSimple_php_forum0.1 (including)0.1 (including)
Simple_php_forumSimple_php_forum0.2 (including)0.2 (including)
Simple_php_forumSimple_php_forum0.3 (including)0.3 (including)

References