Unrated severityNVD Advisory· Published Jun 28, 2006· Updated Apr 24, 2026
CVE-2006-3271
CVE-2006-3271
Description
Multiple SQL injection vulnerabilities in Softbiz Dating 1.0 allow remote attackers to execute SQL commands via the (1) country and (2) sort_by parameters in (a) search_results.php; (3) browse parameter in (b) featured_photos.php; (4) cid parameter in (c) products.php, (d) index.php, and (e) news_desc.php.
Affected products
1- cpe:2.3:a:softbizscripts:dating_script:1.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- secunia.com/advisories/20802nvdExploitVendor Advisory
- www.securityfocus.com/bid/18605nvdExploit
- securityreason.com/securityalert/1163nvdThird Party Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/27383nvdThird Party Advisory
- www.securityfocus.com/archive/1/438245/100/0/threadednvdBroken Link
- www.vupen.com/english/advisories/2006/2512nvdNot Applicable
News mentions
0No linked articles in our index yet.