Multiple SQL injection vulnerabilities in Image Gallery with Access Database allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to (a) dispimage.asp, or the (2) order or (3) page parameter to (b) default.asp.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:23
Type | Values Removed | Values Added |
---|---|---|
References | () http://securityreason.com/securityalert/2147 - | |
References | () http://www.securityfocus.com/archive/1/451875/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/21131 - |
Information
Published : 2007-01-16 23:28
Updated : 2025-04-09 00:30
NVD link : CVE-2006-6932
Mitre link : CVE-2006-6932
CVE.ORG link : CVE-2006-6932
JSON object : View
Products Affected
image_gallery_with_access_database
- image_gallery_with_access_database
CWE