19048Third-party advisory
http://secunia.com/advisories/19048 CVE-2006-1001
Lansuite 2.1.0 Beta - 'fid' SQL Injection
Record summary
CVE-2006-1001 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
SQL injection vulnerability in the board module in LanSuite LanParty Intranet System 2.0.6 and 2.1.0 beta allows remote attackers to execute arbitrary SQL commands via the fid parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBLansuite 2.1.0 Beta - 'fid' SQL InjectionExploitDB exploitby x128Not analyzed1 file
References
723533vdb entry
http://www.osvdb.org/23533 16836vdb entry
http://www.securityfocus.com/bid/16836 ADV-2006-0747vdb entry
http://www.vupen.com/english/advisories/2006/0747 lansuite-fid-sql-injection(24940)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/24940 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2006-1001 1526exploit
https://www.exploit-db.com/exploits/1526