Back

CVE-2006-0163

SQL injection vulnerability in the search module (modules/Search/index.php) of PHPNuke EV 7.7 -R1 allows remote attackers to execute arbitrary SQL commands via the query parameter, which is used by the search field. NOTE: This is a different vulnerability than CVE-2005-3792.

Published: Jan 11, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
francisco_burzi php-nuke_ev 7.7_r1

GitHub Security Advisory GHSA-pp6v-675r-4xp9

SQL injection vulnerability in the search module (modules/Search/index.php) of PHPNuke EV 7.7 -R1...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 7.04%

Top 6% most likely to be exploited

Threat Score 32.1 / 100

Data Sources

NVD EPSS GitHub