CVE-2006-6021
UnknownEPSS 1.21%
Last modified
CVE-2006-6021 is a vulnerability of currently unknown severity. SQL injection vulnerability in the login component in BestWebApp Dating Site allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) passwd parameters.. EPSS estimates a 1.21% chance of exploitation in the next 30 days.
Description
SQL injection vulnerability in the login component in BestWebApp Dating Site allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) passwd parameters.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Bestwebapp | Bestwebapp Dating Site | All versions |
References
- http://secunia.com/advisories/23017Vendor Advisory
- http://secunia.com/advisories/23017Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-6021?
SQL injection vulnerability in the login component in BestWebApp Dating Site allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) passwd parameters.
How severe is CVE-2006-6021?
Severity scoring for CVE-2006-6021 is pending analysis. The EPSS model estimates a 1.21% probability of exploitation in the next 30 days.
How do I fix CVE-2006-6021?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2006
- CVE-2006-6015Buffer overflow in the JavaScript implementation in Safari o…
- CVE-2006-6016wp-admin/user-edit.php in WordPress before 2.0.5 allows remo…6.5
- CVE-2006-6017WordPress before 2.0.5 does not properly store a profile con…6.5
- CVE-2006-6018PHP remote file inclusion vulnerability in mybic_server.php …
- CVE-2006-6019Cross-site scripting (XSS) vulnerability in extensions/googi…
- CVE-2006-6020Cross-site scripting (XSS) vulnerability in announce.php in …
- CVE-2006-6022Cross-site scripting (XSS) vulnerability in login_form.asp i…
- CVE-2006-6023PHP remote file inclusion vulnerability in phoo.base.php in …
- CVE-2006-6024Multiple buffer overflows in Eudora Worldmail, possibly Worl…9.8
- CVE-2006-6025QUALCOMM Eudora WorldMail 4.0 allows remote attackers to cau…7.5
- CVE-2006-6026Heap-based buffer overflow in Real Networks Helix Server and…
- CVE-2006-6027Adobe Reader (Adobe Acrobat Reader) 7.0 through 7.0.8 allows…
Are you affected by CVE-2006-6021?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
