Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-1495

SQL injection vulnerability in general/sendpassword.php in (1) PHPCollab 2.4 and 2.5.rc3, and (2) NetOffice 2.5.3-pl1 and 2.6.0b2 allows remote attackers to execute arbitrary SQL commands via the loginForm parameter in the "forgotten password" option.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.036
EPSS Ranking 87.3%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2006-1495


Contact Us

Shodan ® - All rights reserved