CVE Vulnerabilities

CVE-2006-6937

Published: Jan 17, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in displaypic.asp in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary SQL commands via the sortorder parameter.

Affected Software

Name Vendor Start Version End Version
Xtremeasp_photogallery Pensacola_web_designs 2.0 (including) 2.0 (including)

References