Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-3794

Опубликовано: 24 июл. 2006
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

SQL injection vulnerability in Amazing Flash AFCommerce Shopping Cart allows remote attackers to execute arbitrary SQL commands via the search field. NOTE: the vendor has disputed this issue, stating "if someone were to type in any sql injection code, that code would never be queried.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:amazing_flash_commerce:afcommerce_shopping_cart:*:*:*:*:*:*:*:*

EPSS

Процентиль: 74%
0.0159
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 4 лет назад

** DISPUTED ** SQL injection vulnerability in Amazing Flash AFCommerce Shopping Cart allows remote attackers to execute arbitrary SQL commands via the search field. NOTE: the vendor has disputed this issue, stating "if someone were to type in any sql injection code, that code would never be queried."

EPSS

Процентиль: 74%
0.0159
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other