Unrated severityNVD Advisory· Published Mar 29, 2006· Updated Apr 16, 2026
CVE-2006-1481
CVE-2006-1481
Description
SQL injection vulnerability in search.php in PHP Ticket 0.71 allows remote authenticated users to execute arbitrary SQL commands and obtain usernames and passwords via the frm_search_in parameter.
Affected products
3cpe:2.3:a:php_ticket:php_ticket:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:php_ticket:php_ticket:*:*:*:*:*:*:*:*range: <=0.71
- cpe:2.3:a:php_ticket:php_ticket:0.5:*:*:*:*:*:*:*
- cpe:2.3:a:php_ticket:php_ticket:0.6:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.