CVE-2006-6369 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in lib/entry_reply_entry.php in Invision Community Blog Mod 1.2.4 allows remote attackers to execute arbitrary SQL commands via the eid parameter when accessed through the \Preview message\ functionality.
Reference
http://forums.invisionpower.com/index.php?showtopic=230108 http://www.securityfocus.com/archive/1/453126/100/100/threaded http://www.securityfocus.com/archive/1/453159/100/100/threaded http://www.vupen.com/english/advisories/2006/4820
Share on: