Unrated severityNVD Advisory· Published Sep 6, 2006· Updated Apr 16, 2026
CVE-2006-4585
CVE-2006-4585
Description
SQL injection vulnerability in admin/editer.php in Tr Forum 2.0 allows remote authenticated users to execute arbitrary SQL commands via the id2 parameter. NOTE: this can be leveraged with other Tr Forum vulnerabilities to allow unauthenticated attackers to gain privileges.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- acid-root.new.fr/poc/10060903.txtnvdExploit
- secunia.com/advisories/21754nvdExploitVendor Advisory
- www.securityfocus.com/bid/19834nvdExploit
- securityreason.com/securityalert/1508nvd
- securitytracker.com/idnvd
- www.osvdb.org/28545nvd
- www.securityfocus.com/archive/1/445079/100/0/threadednvd
- www.vupen.com/english/advisories/2006/3452nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/28753nvd
- www.exploit-db.com/exploits/2297nvd
News mentions
0No linked articles in our index yet.