7.5
CVSSv2

CVE-2006-2793

Published: 03/06/2006 Updated: 18/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in Anket.asp in ASPSitem 2.0 and previous versions allows remote malicious users to execute arbitrary SQL commands via the hid parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

aspsitem aspsitem 1.83

aspsitem aspsitem

Exploits

ASPSitem <= 20 Multiple Vulnerabilities Contacts > ICQ: 10072 MSN/Mail: nukedx@nukedxcom web: wwwnukedxcom This exploits works on ASPSitem <= 20 Original advisory can be found at: wwwnukedxcom/?viewdoc=39 SQL injection -> GET -> [victim]/[ASPSitemDir]/Anketasp?hid=[SQL] EXAMPLE -> [victim]/[ASPSitemD ...