CVE-2006-5128 | ConPresso CMS 4.0.4a index.php nr sql injection (XFDB-29275 / BID-20273)
A vulnerability, which was classified as critical, has been found in ConPresso CMS 4.0.4a. Affected by this vulnerability is an unknown functionality of the file index.php. This manipulation of the argument nr causes sql injection.
This vulnerability appears as CVE-2006-5128. The attack may be initiated remotely. There is no available exploit.
It is advisable to upgrade the affected component.