PT-2006-3918 · Phpbannerexchange · Phpbannerexchange

Published

2006-06-19

·

Updated

2018-10-18

·

CVE-2006-3013

CVSS v2.0

5.1

Medium

VectorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions phpBannerExchange versions prior to 2.0 Update 6
Description The issue arises from an interpretation conflict in the resetpw.php file, allowing remote attackers to execute arbitrary SQL commands. This is achieved by including a null (%00) character after a valid e-mail address in the email parameter, which bypasses the validation check performed by the eregi PHP command.
Recommendations For versions prior to 2.0 Update 6, consider updating to version 2.0 Update 6 or later to resolve the issue. As a temporary workaround, restrict the use of the email parameter in the resetpw.php file to prevent potential SQL command execution.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-3013

Affected Products

Phpbannerexchange