CVE-2006-5720

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
04/11/2006
Last modified:
09/04/2025

Description

SQL injection vulnerability in modules/journal/search.php in the Journal module in Francisco Burzi PHP-Nuke 7.9 and earlier allows remote attackers to execute arbitrary SQL commands via the forwhat parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:francisco_burzi:php-nuke:*:*:*:*:*:*:*:* 7.9 (including)
cpe:2.3:a:francisco_burzi:php-nuke:7.0:*:*:*:*:*:*:*
cpe:2.3:a:francisco_burzi:php-nuke:7.1:*:*:*:*:*:*:*
cpe:2.3:a:francisco_burzi:php-nuke:7.2:*:*:*:*:*:*:*
cpe:2.3:a:francisco_burzi:php-nuke:7.3:*:*:*:*:*:*:*
cpe:2.3:a:francisco_burzi:php-nuke:7.4:*:*:*:*:*:*:*
cpe:2.3:a:francisco_burzi:php-nuke:7.5:*:*:*:*:*:*:*
cpe:2.3:a:francisco_burzi:php-nuke:7.6:*:*:*:*:*:*:*
cpe:2.3:a:francisco_burzi:php-nuke:7.7:*:*:*:*:*:*:*
cpe:2.3:a:francisco_burzi:php-nuke:7.8:*:*:*:*:*:*:*