Back

CVE-2006-0462

SQL injection vulnerability in comentarios.php in AndoNET Blog 2004.09.02 allows remote attackers to execute arbitrary SQL commands via the entrada parameter.

Published: Jan 27, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
andonet andonet_blog 2004.09.02

GitHub Security Advisory GHSA-ghph-hx9w-4rpw

SQL injection vulnerability in comentarios.php in AndoNET Blog 2004.09.02 allows remote attackers...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.13%

Top 19% most likely to be exploited

Threat Score 30.6 / 100

Data Sources

NVD EPSS GitHub