CVE-2006-3394 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in the files mod in index.php in BXCP 0.3.0.4 allows remote attackers to execute arbitrary SQL commands via the where parameter in a view action.
Reference
http://secunia.com/advisories/20908 http://www.osvdb.org/26938 http://www.securityfocus.com/bid/18765 http://www.vupen.com/english/advisories/2006/2630 https://exchange.xforce.ibmcloud.com/vulnerabilities/27496 https://www.exploit-db.com/exploits/1975
Share on: