Record summary

CVE-2006-0413 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.

Description

Multiple SQL injection vulnerabilities in index.php in NewsPHP allow remote attackers to execute arbitrary SQL commands via the (1) discuss, (2) tim, (3) id, (4) last, and (5) limit parameter.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBNewsPHP - 'index.php' Multiple SQL InjectionsExploitDB exploitby SAUDINot analyzed1 file
ExploitDB

PoC details

References

7