CVE-2006-2128

N/A Unknown
Published: May 01, 2006 Modified: April 16, 2026
View on NVD

Description

Multiple SQL injection vulnerabilities in Pro Publish 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) email and (2) password parameter to (a) admin/login.php, (3) find_str parameter to (b) search.php, or (4) artid parameter to (c) art.php, or (5) catid parameter to (d) cat.php.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/19882
Source: cve@mitre.org
Vendor Advisory
http://www.osvdb.org/25124
Source: cve@mitre.org
http://www.osvdb.org/25125
Source: cve@mitre.org
http://www.osvdb.org/25126
Source: cve@mitre.org
http://www.osvdb.org/25127
Source: cve@mitre.org
http://www.vupen.com/english/advisories/2006/1578
Source: cve@mitre.org
Vendor Advisory
http://evuln.com/vulns/130/summary.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/19882
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://soot.shabgard.org/bugs/propublish.txt
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/25124
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/25125
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/25126
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/25127
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/435787/100/0/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/17762
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1578
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/26148
Source: af854a3a-2127-422b-91ae-364da2661108

22 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
1.3%
80th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

deltascripts