CVE-2006-5398: SQL Injection
Published Oct 18, 2006
·Updated
SQL injection vulnerability in comments.php in Simplog 0.9.3.1 allows remote attackers to execute arbitrary SQL commands via the cid parameter.
Affected Software
1 affected component
Simplog Simplog=0.9.3.1
Event History
Oct 18, 2006
CVE Published
11:07 PM
Data Sourced
via NVD·11:07 PM
DescriptionSeverityAffected Software
Oct 19, 2006
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-5398?
The severity of CVE-2006-5398 is considered high due to its potential to allow remote attackers to execute arbitrary SQL commands.
2
How do I fix CVE-2006-5398?
To fix CVE-2006-5398, you should upgrade to a newer version of Simplog that addresses this vulnerability.
3
What software is affected by CVE-2006-5398?
CVE-2006-5398 specifically affects Simplog version 0.9.3.1.
4
What type of vulnerability is CVE-2006-5398?
CVE-2006-5398 is an SQL injection vulnerability allowing manipulation of database queries via the cid parameter.
5
Who can be affected by CVE-2006-5398?
Any user of Simplog 0.9.3.1 who has not applied security updates may be affected by CVE-2006-5398.