Vulnerability Information
Vulnerability Scanning
Community
Blog
-
new entry!
Corporate Information
Online Shop
Customer Login
Secunia Advisories
Secunia Research
Binary Analysis
Home
>
Vulnerability Information
>
Secunia Advisories
> CVE-2006-6092
Secunia Advisories
Advisories
Search
Advisories by Product
Advisories by Vendor
Historic Advisories
Mailing Lists
Report Vulnerability
Contact Form
Business Solutions
Partner Solutions
About
CVE Reference: CVE-2006-6092
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by
CVE MITRE
.
Original Page at CVE MITRE:
CVE-2006-6092
Description:
Multiple SQL injection vulnerabilities in vehiclelistings.asp in 20/20 Auto Gallery allow remote attackers to execute arbitrary SQL commands via the (1) vehicleID, (2) categoryID_list, (3) sale_type, (4) stock_number, (5) manufacturer, (6) model, (7) vehicleID, (8) year, (9) vin, and (10) listing_price parameters.
CVE Status:
Candidate
References:
XF
http://xforce.iss.net/xforce/xfdb/30400
SREASON
http://securityreason.com/securityalert/1916
SAID
Secunia Advisory: SA22974
MISC
http://s-a-p.ca/index.php?page=OurAdvisories&id=38
BUGTRAQ
http://www.securityfocus.com/archive/1/archive/1/451947/100/100/threaded
BID
21154
Return to the
previous page
.
Contact
|
Terms & Conditions and Copyright
|
Report Vulnerability
|
Press
|
Jobs
(
open positions
) |
About Secunia
Copyright Secunia 2002-2009