VYPR
Unrated severityNVD Advisory· Published Jun 16, 2006· Updated Jun 16, 2026

CVE-2006-3054

CVE-2006-3054

Description

Multiple SQL injection vulnerabilities in VBZooM 1.11 allow remote attackers to execute arbitrary SQL commands via the (1) sobjectID or (2) MAINID parameters to (a) show.php or (3) MainID parameter to (b) subject.php.

Affected products

2
  • Vbzoom/Vbzoom2 versions
    cpe:2.3:a:vbzoom:vbzoom:1.11:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:vbzoom:vbzoom:1.11:*:*:*:*:*:*:*
    • (no CPE)range: =1.11

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.