RULE(RULE ID:332072)

Rule General Information
Release Date: 2020-09-09
Rule Name: Ban connexion.php id SQL Injection Vulnerability (CVE-2006-7089)
Severity:
CVE ID:
Rule Protection Details
Description: SQL injection vulnerability in connexion.php in Ban 0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Impact: An attacker can inject arbitrary sql commands to view or change the database of the target by exploiting the vulnerability successfully.
Affected OS: Windows, Linux
Reference: http://marc.info/?l=bugtraq&m=116205673106780&w=2
https://exchange.xforce.ibmcloud.com/vulnerabilities/29863
Solutions
There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.