CVE-2006-0942

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/03/2006
Last modified:
05/09/2008

Description

SQL injection vulnerability in profil.php in PwsPHP 1.2.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the aff_news_form parameter, a different vulnerability than CVE-2005-1509.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:pwsphp:pwsphp:*:*:*:*:*:*:*:* 1.2.3 (including)