|
|

CVE Reference: CVE-2006-3792 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2006-3792 |
|
|
Description: SQL injection vulnerability in ServerClientUfo::recv_packet in server_protocol.cpp in UFO2000 svn 1057 allows remote attackers to execute arbitrary SQL commands via unspecified vectors involving the packet.c_str function. |
|
|
CVE Status: Candidate |
|
|
References: XF http://xforce.iss.net/xforce/xfdb/27816 ST 1016503 SREASON http://securityreason.com/securityalert/1259 SAID Secunia Advisory: SA21091 Secunia Advisory: SA24297 MISC http://aluigi.altervista.org/adv/ufo2ko-adv.txt GENTOO http://www.gentoo.org/security/en/glsa/glsa-200702-10.xml CONFIRM http://svn.sourceforge.net/viewcvs.cgi/ufo2000/trunk/src/server_protocol.cpp?view=log BUGTRAQ http://www.securityfocus.com/archive/1/archive/1/440293/100/0/threaded BID 19028 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |