Return to CVE list

CVE-2006-4417

7.5
Critical

CVE-2006-4417

cve@mitre.org
Deferred

Description

SQL injection vulnerability in edituser.php in Xoops before 2.0.15 allows remote attackers to execute arbitrary SQL commands via the user_avatar parameter.

Exploits

No known exploits found for this CVE.

Search Exploit-DB