6
CVSSv2

CVE-2006-6911

Published: 31/12/2006 Updated: 19/10/2017
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
VMScore: 605
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in search.asp in Digitizing Quote And Ordering System 1.0 allows remote authenticated users to execute arbitrary SQL commands via the ordernum parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

digitizing quote and ordering system digitizing quote and ordering system 1.0

Exploits

******************************************************************************* # Title : QUOTE&ORDERING SYSTEM 10 (ordernum) Multiple Vulnerabilities # Author : ajann # Contact : :( # SPage : # $$ : $25000 ******************************************************************************* [[SQL]]]---------------------------- ...