CVE Vulnerabilities

CVE-2006-6911

Published: Dec 31, 2006 | Modified: Oct 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in search.asp in Digitizing Quote And Ordering System 1.0 allows remote authenticated users to execute arbitrary SQL commands via the ordernum parameter.

Affected Software

Name Vendor Start Version End Version
Digitizing_quote_and_ordering_system Digitizing_quote_and_ordering_system 1.0 (including) 1.0 (including)

References