Описание
Multiple SQL injection vulnerabilities in wwweb concepts CactuShop allow remote attackers to execute arbitrary SQL commands via the (1) prodtype parameter in prodtype.asp and the (2) product parameter in product.asp.
Multiple SQL injection vulnerabilities in wwweb concepts CactuShop allow remote attackers to execute arbitrary SQL commands via the (1) prodtype parameter in prodtype.asp and the (2) product parameter in product.asp.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-5991
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30261
- http://aria-security.net/advisory/WWWeb%20Cocepts.txt
- http://secunia.com/advisories/22895
- http://securityreason.com/securityalert/1887
- http://www.securityfocus.com/archive/1/451513/100/100/threaded
- http://www.securityfocus.com/bid/21076
- http://www.vupen.com/english/advisories/2006/4528
EPSS
Процентиль: 78%
0.01135
Низкий
CVE ID
Связанные уязвимости
nvd
около 19 лет назад
Multiple SQL injection vulnerabilities in wwweb concepts CactuShop allow remote attackers to execute arbitrary SQL commands via the (1) prodtype parameter in prodtype.asp and the (2) product parameter in product.asp.
EPSS
Процентиль: 78%
0.01135
Низкий