CVE-2006-0184

Multiple SQL injection vulnerabilities in AspTopSites allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to goto.asp or (2) password parameter to includeloginuser.asp.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mainenet_enterprises:asptopsites:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:05

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/fulldisclosure/2006-01/0351.html - () http://archives.neohapsis.com/archives/fulldisclosure/2006-01/0351.html -
References () http://secunia.com/advisories/18408 - Vendor Advisory () http://secunia.com/advisories/18408 - Vendor Advisory
References () http://www.exploitlabs.com/files/advisories/EXPL-A-2006-001-asptopsites.txt - Exploit, Vendor Advisory () http://www.exploitlabs.com/files/advisories/EXPL-A-2006-001-asptopsites.txt - Exploit, Vendor Advisory
References () http://www.osvdb.org/22330 - () http://www.osvdb.org/22330 -
References () http://www.vupen.com/english/advisories/2006/0146 - () http://www.vupen.com/english/advisories/2006/0146 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/24072 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/24072 -

Information

Published : 2006-01-12 06:02

Updated : 2025-04-03 01:03


NVD link : CVE-2006-0184

Mitre link : CVE-2006-0184

CVE.ORG link : CVE-2006-0184


JSON object : View

Products Affected

mainenet_enterprises

  • asptopsites