CVE-2006-3263: SQL Injection
Published Jun 27, 2006
·Updated
SQL injection vulnerability in the Weblinks module (weblinks.php) in Mambo 4.6rc1 and earlier allows remote attackers to execute arbitrary SQL commands via the catid parameter.
Affected Software
1 affected component
Mambo Mambo<=4.6
Event History
Jun 27, 2006
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-3263?
CVE-2006-3263 has a medium severity rating due to its potential for SQL injection attacks.
2
How do I fix CVE-2006-3263?
To fix CVE-2006-3263, update Mambo to the latest version that is not affected by this vulnerability.
3
What software is affected by CVE-2006-3263?
Mambo versions 4.6rc1 and earlier are affected by CVE-2006-3263.
4
What type of vulnerability is CVE-2006-3263?
CVE-2006-3263 is an SQL injection vulnerability that allows the execution of arbitrary SQL commands.
5
Can CVE-2006-3263 be exploited remotely?
Yes, CVE-2006-3263 can be exploited remotely by attackers through the catid parameter.