Vulnerability Details CVE-2006-7057
SQL injection vulnerability in search.php in Sphider before 1.3.1c allows remote attackers to execute arbitrary SQL commands via the category parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: this issue might be primary to CVE-2006-2506.2.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 56.1%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2006-7057
-
cpe:2.3:a:sphider:sphider:1.3.2
-
cpe:2.3:a:sphider:sphider:1.3.3
-
cpe:2.3:a:sphider:sphider:1.3.4
-
cpe:2.3:a:sphider:sphider:1.3.5
-
cpe:2.3:a:sphider:sphider:1.3.6