Back

CVE-2006-0870

SQL injection vulnerability in pages.asp in Mini-Nuke CMS System 1.8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: version 2.3 was later reported to be vulnerable as well.

Published: Feb 23, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
mini-nuke mini-nuke_cms *

GitHub Security Advisory GHSA-q2hx-whxr-j856

SQL injection vulnerability in pages.asp in Mini-Nuke CMS System 1.8.2 and earlier allows remote...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.18%

Top 19% most likely to be exploited

Threat Score 30.7 / 100

Data Sources

NVD EPSS GitHub