Multiple SQL injection vulnerabilities in Softbiz Image Gallery allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in image_desc.php, (2) provided parameter in template.php, (3) cid parameter in suggest_image.php, (4) img_id parameter in insert_rating.php, and (5) cid parameter in images.php.
Metrics
Affected Vendors & Products
References
History
Fri, 24 Apr 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Softbizscripts
Softbizscripts image Gallery Script |
|
| CPEs | cpe:2.3:a:softbizscripts:image_gallery_script:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Softbiz
Softbiz image Gallery |
Softbizscripts
Softbizscripts image Gallery Script |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T17:19:49.099Z
Reserved: 2006-04-07T00:00:00.000Z
Link: CVE-2006-1659
No data.
Status : Analyzed
Published: 2006-04-07T10:04:00.000
Modified: 2026-04-24T18:56:27.250
Link: CVE-2006-1659
No data.