CVE-2011-0646
UnknownEPSS 1.02%
Last modified
CVE-2011-0646 is a vulnerability of currently unknown severity. SQL injection vulnerability in viewfaqs.php in PHP LOW BIDS allows remote attackers to execute arbitrary SQL commands via the cat parameter.. EPSS estimates a 1.02% chance of exploitation in the next 30 days.
Description
SQL injection vulnerability in viewfaqs.php in PHP LOW BIDS allows remote attackers to execute arbitrary SQL commands via the cat parameter.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Anserv | Php Low Bids | All versions |
References
- http://osvdb.org/70594Exploit
- http://secunia.com/advisories/43008Vendor Advisory
- http://osvdb.org/70594Exploit
- http://secunia.com/advisories/43008Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2011-0646?
SQL injection vulnerability in viewfaqs.php in PHP LOW BIDS allows remote attackers to execute arbitrary SQL commands via the cat parameter.
How severe is CVE-2011-0646?
Severity scoring for CVE-2011-0646 is pending analysis. The EPSS model estimates a 1.02% probability of exploitation in the next 30 days.
How do I fix CVE-2011-0646?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2011
- CVE-2011-0640The default configuration of udev on Linux does not warn the…
- CVE-2011-0641Multiple cross-site scripting (XSS) vulnerabilities in wp-ad…
- CVE-2011-0642Cross-site request forgery (CSRF) vulnerability in news/admi…
- CVE-2011-0643Cross-site request forgery (CSRF) vulnerability in admin/con…
- CVE-2011-0644SQL injection vulnerability in include/admin/model_field.cla…
- CVE-2011-0645SQL injection vulnerability in data.php in PHPCMS 2008 V2 al…
- CVE-2011-0647The irccd.exe service in EMC Replication Manager Client befo…
- CVE-2011-0648Unspecified vulnerability in EMC Avamar before 5.0.4-30 allo…
- CVE-2011-0649Multiple unspecified vulnerabilities in TIBCO Rendezvous 8.2…
- CVE-2011-0650Cross-site request forgery (CSRF) vulnerability in Greenbone…
- CVE-2011-0651Buffer overflow in the key exchange functionality in Icon La…
- CVE-2011-0652lnsfw1.sys 6.0.2900.5512 in Look 'n' Stop Firewall 2.06p4 an…
Are you affected by CVE-2011-0646?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
