Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-1920

SQL injection vulnerability in index.php in PMTool 1.2.2 allows remote attackers to execute arbitrary SQL commands via the order parameter in the include files (1) user.inc.php, (2) customer.inc.php, and (3) project.inc.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.7%
CVSS Severity
CVSS v2 Score 6.4
Products affected by CVE-2006-1920
  • Pmtool » Pmtool » Version: 1.2.2
    cpe:2.3:a:pmtool:pmtool:1.2.2


Contact Us

Shodan ® - All rights reserved