CVE-2006-0146

Source
https://nvd.nist.gov/vuln/detail/CVE-2006-0146
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2006-0146.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2006-0146
Published
2006-01-09T23:03:00Z
Modified
2025-04-03T01:03:51Z
Downstream
Summary
[none]
Details

The server.php test script in ADOdb for PHP before 4.70, as used in multiple products including (1) Mantis, (2) PostNuke, (3) Moodle, (4) Cacti, (5) Xaraya, (6) PHPOpenChat, (7) MAXdev MD-Pro, and (8) MediaBeez, when the MySQL root password is empty, allows remote attackers to execute arbitrary SQL commands via the sql parameter.

References

Affected packages

Debian:11 / cacti

Package

Name
cacti
Purl
pkg:deb/debian/cacti?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.8.6d-1

Ecosystem specific

{
    "urgency": "medium"
}

Debian:12 / cacti

Package

Name
cacti
Purl
pkg:deb/debian/cacti?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.8.6d-1

Ecosystem specific

{
    "urgency": "medium"
}

Debian:13 / cacti

Package

Name
cacti
Purl
pkg:deb/debian/cacti?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.8.6d-1

Ecosystem specific

{
    "urgency": "medium"
}

Debian:11 / libphp-adodb

Package

Name
libphp-adodb
Purl
pkg:deb/debian/libphp-adodb?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.72-0.1

Ecosystem specific

{
    "urgency": "medium"
}

Debian:12 / libphp-adodb

Package

Name
libphp-adodb
Purl
pkg:deb/debian/libphp-adodb?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.72-0.1

Ecosystem specific

{
    "urgency": "medium"
}

Debian:13 / libphp-adodb

Package

Name
libphp-adodb
Purl
pkg:deb/debian/libphp-adodb?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.72-0.1

Ecosystem specific

{
    "urgency": "medium"
}