7.5
CVSSv2

CVE-2006-6806

Published: 28/12/2006 Updated: 19/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in newsdetail.asp in Enthrallweb eMates 1.0 allows remote malicious users to execute arbitrary SQL commands via the ID parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

enthrallweb emates 1.0

Exploits

#!/usr/bin/perl #[Script Name: Enthrallweb emates 10 (newsdetailasp) Remote SQL Injection Exploit #[Coded by : ajann #[Author : ajann #[Contact : :( #[SPage : wwwenthrallwebus #[$$ : 11940 USD #[ : ajann,Turkey use IO::Socket; if(@ARGV < 3){ print " [================================================== ...