Multiple SQL injection vulnerabilities in war.php in Virtual War (VWar) 1.5.0 R14 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) s, (2) showgame, (3) sortorder, and (4) sortby parameters.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 16 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T18:16:05.778Z
Reserved: 2006-06-22T00:00:00
Link: CVE-2006-3139

No data.

Status : Deferred
Published: 2006-06-22T22:06:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2006-3139

No data.

No data.