Unrated severityNVD Advisory· Published Nov 23, 2007· Updated Jun 16, 2026
CVE-2007-6106
CVE-2007-6106
Description
SQL injection vulnerability in index.php in AlstraSoft E-Friends 4.98 and earlier allows remote attackers to execute arbitrary SQL commands via the seid parameter in a viewevent action.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:alstrasoft:e-friends:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:alstrasoft:e-friends:*:*:*:*:*:*:*:*range: <=4.98
- (no CPE)range: <=4.98
Patches
Vulnerability mechanics
References
7- secunia.com/advisories/27766nvdVendor Advisory
- advisories.echo.or.id/adv/adv85-K-159-2007.txtnvd
- www.securityfocus.com/archive/1/484056/100/0/threadednvd
- www.securityfocus.com/bid/26519nvd
- www.vupen.com/english/advisories/2007/3964nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/38599nvd
- www.exploit-db.com/exploits/4641nvd
News mentions
0No linked articles in our index yet.