CVE-2006-5622: SQL Injection
Published Oct 31, 2006
·Updated
SQL injection vulnerability in picmgr.php in Coppermine Photo Gallery 1.4.9 allows remote attackers to execute arbitrary SQL commands via the aid parameter.
Affected Software
1 affected component
Coppermine Coppermine Photo Gallery=1.4.9
Remediation
Patch Available
Patch Available
Event History
Oct 31, 2006
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Data Sourced
via NVD·08:07 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-5622?
CVE-2006-5622 has a high severity due to its impact on database integrity through SQL injection.
2
How do I fix CVE-2006-5622?
To fix CVE-2006-5622, upgrade to a patched version of Coppermine Photo Gallery that addresses the SQL injection vulnerability.
3
Which versions of Coppermine Photo Gallery are affected by CVE-2006-5622?
CVE-2006-5622 specifically affects Coppermine Photo Gallery version 1.4.9.
4
What types of attacks can be performed using CVE-2006-5622?
CVE-2006-5622 allows remote attackers to execute arbitrary SQL commands on the vulnerable application.
5
Is it safe to use Coppermine Photo Gallery 1.4.9 after CVE-2006-5622 is reported?
Using Coppermine Photo Gallery 1.4.9 is not safe after CVE-2006-5622 is reported, as it poses serious security risks until updated.