CVE-2006-0973: SQL Injection
SQL injection vulnerability in topics.php in Appalachian State University phpWebSite 0.10.2 and earlier allows remote attackers to execute arbitrary SQL commands via the topic parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0973?
CVE-2006-0973 is classified as a medium severity vulnerability due to the potential for remote SQL command execution.
How do I fix CVE-2006-0973?
To mitigate CVE-2006-0973, you should upgrade phpWebSite to version 0.10.3 or later where the vulnerability is patched.
What systems are affected by CVE-2006-0973?
CVE-2006-0973 affects phpWebSite versions 0.10.2 and earlier, including 0.7.3, 0.8.2, 0.8.3, 0.9.3, and several other versions.
What type of vulnerability is CVE-2006-0973?
CVE-2006-0973 is an SQL injection vulnerability which allows attackers to execute arbitrary SQL commands.
Can CVE-2006-0973 lead to data loss?
Yes, CVE-2006-0973 can result in sensitive data exposure or modification due to unauthorized SQL command execution.