Multiple SQL injection vulnerabilities in main.php in Chipmailer 1.09 allow remote attackers to execute arbitrary SQL commands via multiple parameters, as demonstrated by (1) anfang, (2) name, (3) mail, (4) anrede, (5) vorname, (6) nachname, (7) gebtag, (8) gebmonat, and (9) gebjahr.
Metrics
Affected Vendors & Products
References
History
Tue, 15 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|

Status: PUBLISHED
Assigner: mitre
Published: 2006-06-21T01:00:00
Updated: 2024-08-07T18:16:05.710Z
Reserved: 2006-06-20T00:00:00
Link: CVE-2006-3111

No data.

Status : Deferred
Published: 2006-06-21T01:02:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2006-3111

No data.