Back

CVE-2006-0581

SQL injection vulnerability in Hosting Controller 6.1 Hotfix 2.8 allows remote authenticated users to execute arbitrary SQL commands via the (1) GatewayID parameter in an add action in AddGatewaySettings.asp and (2) IP parameter in IPManager.asp.

Published: Feb 8, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
hosting_controller hosting_controller 6.1_hotfix_2.8

GitHub Security Advisory GHSA-4chp-4g85-53gv

SQL injection vulnerability in Hosting Controller 6.1 Hotfix 2.8 allows remote authenticated...

Risk Scores

CVSS Score 6.5 / 10
EPSS Score 1.83%

Top 23% most likely to be exploited

Threat Score 26.5 / 100

Data Sources

NVD EPSS GitHub