CVE-2006-1489 Information

Description

Multiple SQL injection vulnerabilities in FusionZONE CouponZONE local.cfm in 4.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) companyid (2) scat and (3) coid parameters.

Reference

http://pridels0.blogspot.com/2006/03/couponzone-v42-multiple-vuln.html http://www.osvdb.org/24179 http://www.securityfocus.com/bid/17274 https://exchange.xforce.ibmcloud.com/vulnerabilities/25576

Share on: