Back
CVE-2006-0973
SQL injection vulnerability in topics.php in Appalachian State University phpWebSite 0.10.2 and earlier allows remote attackers to execute arbitrary SQL commands via the topic parameter.
Published: Mar 3, 2006
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (11)
| Vendor | Product | Version |
|---|---|---|
| phpwebsite | phpwebsite | 0.7.3 |
| phpwebsite | phpwebsite | 0.8.2 |
| phpwebsite | phpwebsite | 0.8.3 |
| phpwebsite | phpwebsite | 0.9.3 |
| phpwebsite | phpwebsite | 0.9.3.1 |
| phpwebsite | phpwebsite | 0.9.3.2 |
| phpwebsite | phpwebsite | 0.9.3.3 |
| phpwebsite | phpwebsite | 0.9.3.4 |
| phpwebsite | phpwebsite | 0.10 |
| phpwebsite | phpwebsite | 0.10.1 |
| phpwebsite | phpwebsite | 0.10.2 |
GitHub Security Advisory GHSA-cjqc-3f3m-766p
SQL injection vulnerability in topics.php in Appalachian State University phpWebSite 0.10.2 and...
References (12)
- http://www.securityfocus.com/archive/1/430870/100/0/threaded
- http://www.securityfocus.com/archive/1/435009/100/0/threaded
- http://www.securityfocus.com/bid/16825 Exploit, Vendor Advisory
- http://www.securityfocus.com/data/vulnerabilities/exploits/phpWebSite-topic-sql-inj.pl Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25799
- https://www.exploit-db.com/exploits/1525
- http://www.securityfocus.com/archive/1/430870/100/0/threaded
- http://www.securityfocus.com/archive/1/435009/100/0/threaded
- http://www.securityfocus.com/bid/16825 Exploit, Vendor Advisory
- http://www.securityfocus.com/data/vulnerabilities/exploits/phpWebSite-topic-sql-inj.pl Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25799
- https://www.exploit-db.com/exploits/1525
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.28%
Top 32% most likely to be exploited
Threat Score
30.4 / 100
Data Sources
NVD
EPSS
GitHub