Multiple SQL injection vulnerabilities in Walter Beschmout PhpQuiz 1.2 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the univers parameter in score.php and (2) the quiz_id parameter in home.php, accessed through the front/ URI.
Advisories
Source ID Title
EUVD EUVD EUVD-2006-4964 Multiple SQL injection vulnerabilities in Walter Beschmout PhpQuiz 1.2 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the univers parameter in score.php and (2) the quiz_id parameter in home.php, accessed through the front/ URI.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T19:32:22.387Z

Reserved: 2006-09-24T00:00:00

Link: CVE-2006-4978

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2006-09-25T01:07:00.000

Modified: 2025-04-03T01:03:51.193

Link: CVE-2006-4978

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.