CVE-2006-5962
Last modified
CVE-2006-5962 is a vulnerability of currently unknown severity. Multiple SQL injection vulnerabilities in Hpecs Shopping Cart allow remote attackers to execute arbitrary SQL commands via the (1) Username and (2) Password fields in the (a) login screen, and (3) searchstring parameter in (b) insearch_list.asp.. EPSS estimates a 1.31% chance of exploitation in the next 30 days.
Description
Multiple SQL injection vulnerabilities in Hpecs Shopping Cart allow remote attackers to execute arbitrary SQL commands via the (1) Username and (2) Password fields in the (a) login screen, and (3) searchstring parameter in (b) insearch_list.asp.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Hpecs Shopping Cart | Hpecs Shopping Cart | All versions |
References
- http://secunia.com/advisories/22904Vendor Advisory
- http://secunia.com/advisories/22904Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-5962?
How severe is CVE-2006-5962?
How do I fix CVE-2006-5962?
Are you affected by CVE-2006-5962?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
