CVE

Id
19463  
CVE No.
CVE-2006-3359  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in index.php in NewsPHP 2006 PRO allow remote attackers to inject arbitrary web script or HTML via the (1) words, (2) id, (3) topmenuitem, and (4) cat_id parameters in (a) index.php; and the (5) category parameter in (b) inc/rss_feed.php.  
Phase
Assigned (20060706)  
Votes
None (candidate not yet proposed)  
Comments