Back

CVE-2006-0727

SQL injection vulnerability in mstrack.php in MusOX DF MSAnalysis (DFMSA), as used in some environments that use CPG-Nuke Dragonfly CMS, allows remote attackers to trigger path disclosure from a SQL syntax error, and possibly execute arbitrary SQL commands, via certain query data, probably involving the profile name.

Published: Feb 16, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
musox df_msanalysis 1.0.1

GitHub Security Advisory GHSA-6fqg-jf23-j9hg

SQL injection vulnerability in mstrack.php in MusOX DF MSAnalysis (DFMSA), as used in some...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.14%

Top 19% most likely to be exploited

Threat Score 30.6 / 100

Data Sources

NVD EPSS GitHub