CVE-2006-0412 Information

Description

SQL injection vulnerability in CyberShop allows remote attackers to execute arbitrary SQL commands and bypass authentication via the username parameter in a login action.

Reference

http://archives.neohapsis.com/archives/bugtraq/2006-01/0064.html http://www.osvdb.org/22365 https://exchange.xforce.ibmcloud.com/vulnerabilities/24005

Share on: