CVE Vulnerabilities

CVE-2006-6450

Published: Dec 10, 2006 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Multiple SQL injection vulnerabilities in dagent/downloadreport.asp in Novell ZENworks Patch Management (ZPM) before 6.3.2.700 allow remote attackers to execute arbitrary SQL commands via the (1) agentid and (2) pass parameters.

Affected Software

Name Vendor Start Version End Version
Zenworks_patch_management_server Novell 6.3.2.700 (including) 6.3.2.700 (including)

References