CVE-2006-5219
Publication date 10 October 2006
Last updated 24 July 2024
Ubuntu priority
Description
SQL injection vulnerability in blog/index.php in the blog module in Moodle 1.6.2 allows remote attackers to execute arbitrary SQL commands via a double-encoded tag parameter.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| moodle | 9.10 karmic |
Not affected
|
| 9.04 jaunty |
Not affected
|
|
| 8.10 intrepid |
Not affected
|
|
| 8.04 LTS hardy |
Not affected
|
|
| 7.10 gutsy |
Not affected
|
|
| 7.04 feisty |
Fixed 1.6.2-1ubuntu1.1
|
|
| 6.10 edgy |
Fixed 1.6.2-1ubuntu1.1
|
|
| 6.06 LTS dapper | Ignored end of life |