Back

CVE-2006-0939

SQL injection vulnerability in DCI-Taskeen 1.03 allows remote attackers to execute arbitrary SQL commands via the (1) id or (2) action parameter to (a) basket.php, or (3) id or (4) page parameter to (b) cat.php.

Published: Mar 1, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
dci-designs dci-taskeen 1.03

GitHub Security Advisory GHSA-24pw-p8jc-r7j5

SQL injection vulnerability in DCI-Taskeen 1.03 allows remote attackers to execute arbitrary SQL...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.17%

Top 35% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub