VYPR
Unrated severityNVD Advisory· Published Jan 19, 2006· Updated Apr 16, 2026

CVE-2006-0313

CVE-2006-0313

Description

Multiple SQL injection vulnerabilities in PDFdirectory before 1.0 allow remote attackers to execute arbitrary SQL commands via multiple unspecified vectors involving (1) util.php, (2) userpref.php, (3) user.php, (4) uploadfrm.php, (5) title.php, (6) team.php, (7) stats.php, (8) page.php, (9) org.php, (10) member.php, (11) index.php, (12) group.php, or (13) anniv.php.

Affected products

10
  • cpe:2.3:a:pdfdirectory:pdfdirectory:0.2.10:*:*:*:*:*:*:*+ 9 more
    • cpe:2.3:a:pdfdirectory:pdfdirectory:0.2.10:*:*:*:*:*:*:*
    • cpe:2.3:a:pdfdirectory:pdfdirectory:0.2.11:*:*:*:*:*:*:*
    • cpe:2.3:a:pdfdirectory:pdfdirectory:0.2.2:*:*:*:*:*:*:*
    • cpe:2.3:a:pdfdirectory:pdfdirectory:0.2.3:*:*:*:*:*:*:*
    • cpe:2.3:a:pdfdirectory:pdfdirectory:0.2.4:*:*:*:*:*:*:*
    • cpe:2.3:a:pdfdirectory:pdfdirectory:0.2.5:*:*:*:*:*:*:*
    • cpe:2.3:a:pdfdirectory:pdfdirectory:0.2.6:*:*:*:*:*:*:*
    • cpe:2.3:a:pdfdirectory:pdfdirectory:0.2.7:*:*:*:*:*:*:*
    • cpe:2.3:a:pdfdirectory:pdfdirectory:0.2.8:*:*:*:*:*:*:*
    • cpe:2.3:a:pdfdirectory:pdfdirectory:0.2.9:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

17

News mentions

0

No linked articles in our index yet.