CVE-2006-6192
Last modified
CVE-2006-6192 is a vulnerability of currently unknown severity. Unspecified scripts in the admin directory in 8pixel.net SimpleBlog 3.0 and earlier do not properly perform authentication, which allows remote attackers to add users and perform certain other unauthorized privileged actions. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.. EPSS estimates a 1.26% chance of exploitation in the next 30 days.
Description
Unspecified scripts in the admin directory in 8pixel.net SimpleBlog 3.0 and earlier do not properly perform authentication, which allows remote attackers to add users and perform certain other unauthorized privileged actions. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| 8pixel.Net | Simple Blog | 2.0 |
| 8pixel.Net | Simple Blog | 2.1 |
| 8pixel.Net | Simple Blog | 2.2 |
| 8pixel.Net | Simple Blog | 2.3 |
| 8pixel.Net | Simple Blog | 3.0 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-6192?
How severe is CVE-2006-6192?
How do I fix CVE-2006-6192?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2006
- CVE-2006-6186Multiple directory traversal vulnerabilities in enomphp 4.0 …
- CVE-2006-6187Multiple SQL injection vulnerabilities in ClickTech Click Ga…
- CVE-2006-6188Cross-site scripting (XSS) vulnerability in view_search.asp …
- CVE-2006-6189SQL injection vulnerability in displayCalendar.asp in ClickT…
- CVE-2006-6190SQL injection vulnerability in anna.pl in Anna^ IRC Bot befo…
- CVE-2006-6191SQL injection vulnerability in admin/edit.asp in 8pixel.net …
- CVE-2006-6193SQL injection vulnerability in edit.asp in BasicForum 1.1 an…
- CVE-2006-6194Multiple SQL injection vulnerabilities in index.asp in Ultim…
- CVE-2006-6195Multiple SQL injection vulnerabilities in Fixit iDMS Pro Ima…
- CVE-2006-6196Cross-site scripting (XSS) vulnerability in the search funct…
- CVE-2006-6197Multiple cross-site scripting (XSS) vulnerabilities in b2evo…
- CVE-2006-6198Multiple cross-site scripting (XSS) vulnerabilities in cPane…
Are you affected by CVE-2006-6192?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
