Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2006-2061
Description:SQL injection vulnerability in lib/func_taskmanager.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote attackers to execute arbitrary SQL commands via the ck parameter, which can inject at most 32 characters.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2006-2061
BugTraq ID: 17690
http://www.securityfocus.com/bid/17690
Bugtraq: 20060425 Invision Vulnerabilities, including remote code execution (Google Search)
http://www.securityfocus.com/archive/1/431990/100/0/threaded
Bugtraq: 20060427 Re: Invision Vulnerabilities, including remote code execution (Google Search)
http://www.securityfocus.com/archive/1/432226/100/0/threaded
http://secunia.com/advisories/19830
http://securityreason.com/securityalert/796
http://www.vupen.com/english/advisories/2006/1534
XForce ISS Database: invision-index-ck-sql-injection(26071)
https://exchange.xforce.ibmcloud.com/vulnerabilities/26071




© 1998-2025 E-Soft Inc. All rights reserved.