CVE Vulnerabilities

CVE-2006-5935

Published: Nov 16, 2006 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in index.php in ShopSystems 4.0 and earlier allows remote attackers to execute arbitrary SQL commands via the sessid parameter.

Affected Software

Name Vendor Start Version End Version
Shopsystems Shopsystems 4.0 (including) 4.0 (including)

References