Vulnerability Description
SQL injection vulnerability in quiz.php in Web Group Communication Center (WGCC) 0.5.6b and earlier allows remote attackers to execute arbitrary SQL commands via the qzid parameter.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Web Group Communication Center | Web Group Communication Center | <= 0.5.6b |
References
- http://www.securityfocus.com/bid/20653
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29712
- https://www.exploit-db.com/exploits/2604
- http://www.securityfocus.com/bid/20653
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29712
- https://www.exploit-db.com/exploits/2604
FAQ
What is CVE-2006-5514?
CVE-2006-5514 is a vulnerability with a CVSS score of 7.5 (HIGH). SQL injection vulnerability in quiz.php in Web Group Communication Center (WGCC) 0.5.6b and earlier allows remote attackers to execute arbitrary SQL commands via the qzid parameter.
How severe is CVE-2006-5514?
CVE-2006-5514 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-5514?
Check the references section above for vendor advisories and patch information. Affected products include: Web Group Communication Center Web Group Communication Center.