CVE-2006-2202: SQL Injection
Published May 4, 2006
·Updated
SQL injection vulnerability in post.php in Invision Gallery 2.0.6 allows remote attackers to execute arbitrary SQL commands via the album parameter.
Affected Software
1 affected component
Invision Power Services Invision Gallery=2.0.6
Remediation
Patch Available
Patch Available
Event History
May 4, 2006
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-2202?
CVE-2006-2202 is considered a critical vulnerability due to its potential for arbitrary SQL command execution.
2
How do I fix CVE-2006-2202?
To fix CVE-2006-2202, upgrade to a patched version of Invision Gallery beyond 2.0.6.
3
Who is affected by CVE-2006-2202?
CVE-2006-2202 affects users of Invision Gallery version 2.0.6.
4
What type of vulnerability is CVE-2006-2202?
CVE-2006-2202 is an SQL injection vulnerability.
5
What potential impact does CVE-2006-2202 have on systems?
The potential impact of CVE-2006-2202 includes unauthorized access to the database and data manipulation.