CVE-2006-4056 Information
Feb 14, 2021
cve
Description
Multiple SQL injection vulnerabilities in the authentication process in katzlbt (a) The Address Book 1.04e and earlier and (b) The Address Book Reloaded before 2.0-rc4 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters. NOTE: portions of these details are obtained from third party information.
Reference
http://secunia.com/advisories/21364 http://secunia.com/advisories/21379 http://sourceforge.net/project/shownotes.php?release_id=437760&group_id=172286 http://www.securityfocus.com/bid/19378 http://www.securityfocus.com/bid/19380 http://www.vupen.com/english/advisories/2006/3174 http://www.vupen.com/english/advisories/2006/3176 https://exchange.xforce.ibmcloud.com/vulnerabilities/28258
Share on: