CVE-2006-0870 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in pages.asp in Mini-Nuke CMS System 1.8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: version 2.3 was later reported to be vulnerable as well.
Reference
http://secunia.com/advisories/18439 http://www.nukedx.com/?viewdoc=9 http://www.osvdb.org/23438 http://www.securityfocus.com/archive/1/425599/100/0/threaded http://www.securityfocus.com/archive/1/428361/100/0/threaded http://www.securityfocus.com/archive/1/431602/100/0/threaded http://www.securityfocus.com/archive/1/431714/100/0/threaded http://www.securityfocus.com/bid/16730 http://www.securityfocus.com/bid/17636 https://exchange.xforce.ibmcloud.com/vulnerabilities/24803
Share on: