First published: Thu May 25 2006(Updated: )
SQL injection vulnerability in e107 before 0.7.5 allows remote attackers to execute arbitrary SQL commands via unknown attack vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
e107 CMS | =0.7.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-2590 is considered to have a high severity due to its potential for remote SQL command execution.
To fix CVE-2006-2590, upgrade to e107 version 0.7.5 or later.
CVE-2006-2590 allows attackers to execute arbitrary SQL commands through unvalidated input.
CVE-2006-2590 affects e107 versions prior to 0.7.5.
Yes, upgrading to e107 version 0.7.5 provides a patch for CVE-2006-2590.