← Back to CVE List
Vulnerability Intelligence Report

CVE-2006-7034

SQL injection vulnerability in directory.php in Super Link Exchange Script 1.0 might allow remote attackers to execute arbitrary SQL queries via the cat parameter.

No Active Exploit Signals
CVSS Base Score
7.5
HIGH
EPSS Probability:1.05%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Affected Products & Versions

Vendor Product Affected Versions
apple mac_os_x 10.4.9
hp hp-ux all
hp tru64 5.1b_pk2_bl22
ibm aix all
ibm os2 all
linux linux_kernel all
microsoft windows_2000 all
microsoft windows_2003_server sp2
microsoft windows_95 all
microsoft windows_98 all
microsoft windows_98se all
microsoft windows_me all
microsoft windows_nt 4.0
microsoft windows_xp all
santa_cruz_operation sco_unix all
sun solaris all
windriver bsdos all
super_link_exchange_script super_link_exchange_script 1.0

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
1.051%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2007-02-22T00:00:00
Published2007-02-23T01:00:00
Patch Date2006-05-25
Last Updated2024-08-07T20:50:05

LINK COPIED TO CLIPBOARD