7.5
CVSSv2

CVE-2006-6083

Published: 24/11/2006 Updated: 14/02/2024
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in search.asp in CreaScripts Creadirectory allows remote malicious users to execute arbitrary SQL commands via the category parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

creascripts creadirectory 1.2

Exploits

source: wwwsecurityfocuscom/bid/21230/info Creascripts creadirectory is prone to multiple input-validation vulnerabilities, inculding SQL-injection issues and a cross-site scripting issue, because the application fails to sufficiently sanitize user-supplied data Exploiting these issues could allow an attacker to steal cookie-based authe ...