Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Bolivar

#18127of 53,630
15Total CVSS
Vulnerabilities · 2
High
2
PT-2006-6821
7.5
2006-12-01
8Pixel.Net · Simpleblog · CVE-2006-6191
**Name of the Vulnerable Software and Affected Versions** 8pixel.net simpleblog versions 2.3 and earlier **Description** A SQL injection issue allows remote attackers to execute arbitrary SQL commands via the `id` parameter in the "admin/edit.asp" endpoint. **Recommendations** For versions 2.3 and earlier, update to a version later than 2.3 to resolve the issue.
PT-2006-6823
7.5
2006-12-01
Basicforum · Basicforum · CVE-2006-6193
**Name of the Vulnerable Software and Affected Versions** BasicForum versions 1.1 and earlier **Description** The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `id` parameter in the "edit.asp" endpoint. **Recommendations** For BasicForum versions 1.1 and earlier, avoid using the `id` parameter in the edit.asp endpoint until the issue is resolved. As a temporary workaround, consider restricting access to the edit.asp endpoint to minimize the risk of exploitation.