CVE-2006-6543

Multiple SQL injection vulnerabilities in login.asp in AppIntellect SpotLight CRM 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) login (UserName) and possibly (2) password parameter. NOTE: some of these details are obtained from third party information.
Configurations

Configuration 1 (hide)

cpe:2.3:a:appintellect:spotlight_crm:1.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:22

Type Values Removed Values Added
References () http://www.vupen.com/english/advisories/2006/4932 - () http://www.vupen.com/english/advisories/2006/4932 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/30835 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/30835 -
References () https://www.exploit-db.com/exploits/2907 - () https://www.exploit-db.com/exploits/2907 -

Information

Published : 2006-12-14 02:28

Updated : 2024-11-21 00:22


NVD link : CVE-2006-6543

Mitre link : CVE-2006-6543

CVE.ORG link : CVE-2006-6543


JSON object : View

Products Affected

appintellect

  • spotlight_crm