7.5
CVSSv2

CVE-2006-4524

Published: 01/09/2006 Updated: 17/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in login_verif.asp in Digiappz Freekot 1.01 allow remote malicious users to execute arbitrary SQL commands via the (1) login or (2) password parameters. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

digiappz freekot

digiappz freekot 1.01

Exploits

[?] ?????????????????????????{In The Name Of Allah The Mercifull}?????????????????????? [?] [~]Tybe:(4u7h 8yp455) Remote SQL Injection Vulnerability [?] [~]Vendor: wwwdigiappzcom [?]Software:freekot [?] [?]author: ((R3d-D3v!L)) [?] [?]Date: 16dec2009 [?]T!ME: 11:30 pm [?] Home: WwWxP10ME [?] [?] contact: N/A [?] [?]??????????????????????{DEV! ...
source: wwwsecurityfocuscom/bid/19768/info Digiappz Freekot is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data A successful exploit could allow an attacker to compromise the application, retrieve sensitive information, or modify data; other consequences are possible as well <html ...