Back

CVE-2006-1020

SQL injection vulnerability in forumlib.php in Johnny_Vegas Vegas Forum 1.0 allows remote attackers to execute arbitrary SQL commands via the postid parameter.

Published: Mar 7, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
johnny_vegas vegas_forum 1.0

GitHub Security Advisory GHSA-7mmr-jq9q-9p37

SQL injection vulnerability in forumlib.php in Johnny_Vegas Vegas Forum 1.0 allows remote...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.41%

Top 29% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub