CVE-2006-3572

Papoo < 3.0.0_rc3 - SQL Injection

Title source: rule

Description

SQL injection vulnerability in forumthread.php in Papoo 3 RC3 and earlier allows remote attackers to execute arbitrary SQL commands via the msgid parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by rgod · phpwebappsphp
https://www.exploit-db.com/exploits/1993

Scores

EPSS 0.0266
EPSS Percentile 85.8%

Details

Status published
Products (6)
papoo/papoo 2.1.2
papoo/papoo 2.1.4
papoo/papoo 2.1.5
papoo/papoo 3.0.0
papoo/papoo 3.0.0_beta1
papoo/papoo < 3.0.0_rc3
Published Jul 13, 2006
Tracked Since Feb 18, 2026