Unrated severityNVD Advisory· Published Oct 25, 2006· Updated Jun 16, 2026
CVE-2006-5491
CVE-2006-5491
Description
Multiple SQL injection vulnerabilities in include/index.php in UltraCMS 0.9 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.
Affected products
2Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.