PublicDate: 2006-10-10 04:06:00 UTC Candidate: CVE-2006-5219 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5219 Description: SQL injection vulnerability in blog/index.php in the blog module in Moodle 1.6.2 allows remote attackers to execute arbitrary SQL commands via a double-encoded tag parameter. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: upstream_moodle: needs-triage dapper_moodle: ignored (reached end-of-life) edgy_moodle: released (1.6.2-1ubuntu1.1) feisty_moodle: released (1.6.2-1ubuntu1.1) gutsy_moodle: not-affected (1.6.2-1ubuntu1.1) hardy_moodle: not-affected (1.6.2-1ubuntu1.1) intrepid_moodle: not-affected (1.6.2-1ubuntu1.1) jaunty_moodle: not-affected (1.6.2-1ubuntu1.1) karmic_moodle: not-affected (1.6.2-1ubuntu1.1) devel_moodle: not-affected (1.6.2-1ubuntu1.1)