CVE-2006-6912

Phpmyfaq < 1.6.7 - SQL Injection

Title source: rule

Description

SQL injection vulnerability in phpMyFAQ 1.6.7 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors, possibly the userfile or filename parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by elgCrew · phpwebappsphp
https://www.exploit-db.com/exploits/3393

Scores

EPSS 0.0040
EPSS Percentile 60.7%

Details

CWE
CWE-89
Status published
Products (1)
phpmyfaq/phpmyfaq < 1.6.7
Published Dec 31, 2006
Tracked Since Feb 18, 2026