CVE-2006-3154 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in index.pl in Ultimate Estate 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
Reference
http://pridels0.blogspot.com/2006/06/ultimate-estate-vuln.html http://secunia.com/advisories/20761 http://securitytracker.com/id?1016353 http://www.osvdb.org/26740 http://www.securityfocus.com/bid/18573 http://www.vupen.com/english/advisories/2006/2475 https://exchange.xforce.ibmcloud.com/vulnerabilities/27273
Share on: