Loading...
Loading...
Multiple SQL injection vulnerabilities in The Address Book 1.04e allow remote attackers to execute arbitrary SQL commands via the (1) lastname, (2) firstname, (3) passwordOld, (4) passwordNew, (5) id, (6) language, (7) defaultLetter, (8) newuserPass, (9) newuserType, (10) newuserEmail parameters in (a) user.php; the (11) goTo and (12) search parameters in (b) search.php; and the (13) groupAddName parameter in (c) save.php.
December 31, 2006
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2006-4575
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.