CVE-2006-5217
Last modified
CVE-2006-5217 is a vulnerability of currently unknown severity. SQL injection vulnerability in giris_yap.asp in Emek Portal 2.1 allows remote attackers to execute arbitrary SQL commands by simultaneously injecting into the user name and pass fields in uyegiris.asp, also known as the Kullanici Adi (k_a) and Sifre (sifre) parameters.. EPSS estimates a 1.04% chance of exploitation in the next 30 days.
Description
SQL injection vulnerability in giris_yap.asp in Emek Portal 2.1 allows remote attackers to execute arbitrary SQL commands by simultaneously injecting into the user name and pass fields in uyegiris.asp, also known as the Kullanici Adi (k_a) and Sifre (sifre) parameters.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Emek Portal | Emek Portal | 2.1 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-5217?
How severe is CVE-2006-5217?
How do I fix CVE-2006-5217?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2006
- CVE-2006-5211Trend Micro OfficeScan 6.0 in Client/Server/Messaging (CSM) …
- CVE-2006-5212Trend Micro OfficeScan 6.0 in Client/Server/Messaging (CSM) …
- CVE-2006-5213Sun Solaris 10 before 20061006 uses "incorrect and insuffici…
- CVE-2006-5214Race condition in the Xsession script, as used by X Display …
- CVE-2006-5215The Xsession script, as used by X Display Manager (xdm) in N…
- CVE-2006-5216Stack-based buffer overflow in Sergey Lyubka Simple HTTPD (s…
- CVE-2006-5218Integer overflow in the systrace_preprepl function (STRIOCRE…
- CVE-2006-5219SQL injection vulnerability in blog/index.php in the blog mo…
- CVE-2006-5220Multiple PHP remote file inclusion vulnerabilities in WebYep…
- CVE-2006-5221Multiple SQL injection vulnerabilities in Cahier de texte 2.…
- CVE-2006-5222Multiple PHP remote file inclusion vulnerabilities in Dimens…
- CVE-2006-5223PHP remote file inclusion vulnerability in includes/function…
Are you affected by CVE-2006-5217?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
