← Back

CVE-2006-1766

nvd nist
Published: Apr 13, 2006Modified: Apr 16, 2026

JSON object

Loading...
6.4
Vector
AV:N/AC:L/Au:N/C:N/I:P/A:P
Exploitability: 10.0 / Impact: 4.9
Source: NVD

Description

Multiple SQL injection vulnerabilities in Papoo 2.1.5, and 3 beta1 and earlier, allow remote attackers to execute arbitrary SQL commands via the (1) getlang and (2) reporeid parameter in (a) index.php, (3) menuid parameter in (b) plugin.php and (c) forumthread.php, and (4) msgid parameter in forumthread.php.

Affected (4)

Products: Papoo: Papoo
1 product
Papoo
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Papoo
Up to 3_beta1
Version 2.1.2
Version 2.1.4
Version 2.1.5

Timeline

No history available yet.