Unrated severityNVD Advisory· Published Aug 10, 2006· Updated Apr 16, 2026
CVE-2006-4056
CVE-2006-4056
Description
Multiple SQL injection vulnerabilities in the authentication process in katzlbt (a) The Address Book 1.04e and earlier and (b) The Address Book Reloaded before 2.0-rc4 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters. NOTE: portions of these details are obtained from third party information.
Affected products
2- cpe:2.3:a:the_address_book_reloaded:the_address_book_reloaded:*:*:*:*:*:*:*:*Range: <=2.0
- cpe:2.3:a:the_address_book:the_address_book:*:*:*:*:*:*:*:*Range: <=1.04e
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- secunia.com/advisories/21379nvdPatchVendor Advisory
- sourceforge.net/project/shownotes.phpnvdPatch
- secunia.com/advisories/21364nvdVendor Advisory
- www.securityfocus.com/bid/19378nvd
- www.securityfocus.com/bid/19380nvd
- www.vupen.com/english/advisories/2006/3174nvd
- www.vupen.com/english/advisories/2006/3176nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/28258nvd
News mentions
0No linked articles in our index yet.