CVE-2006-5508: SQL Injection
Published Oct 25, 2006
·Updated
Multiple SQL injection vulnerabilities in addentry.php in WoltLab Burning Book 1.1.2 allow remote attackers to execute arbitrary SQL commands via (1) the n parameter and (2) the User-Agent HTTP header.
Affected Software
1 affected component
Woltlab Burning Book=1.1.2
Event History
Oct 25, 2006
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
via NVD·10:07 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-5508?
CVE-2006-5508 is classified as a critical vulnerability due to its potential for SQL injection attacks.
2
How do I fix CVE-2006-5508?
To fix CVE-2006-5508, ensure to update WoltLab Burning Book to a patched version that addresses the SQL injection issues.
3
What systems are affected by CVE-2006-5508?
CVE-2006-5508 affects WoltLab Burning Book version 1.1.2.
4
What types of attacks can exploit CVE-2006-5508?
CVE-2006-5508 can be exploited to execute arbitrary SQL commands, compromising database integrity.
5
Are there known exploits for CVE-2006-5508?
Yes, there are known exploits that leverage the SQL injection vulnerabilities in CVE-2006-5508.