CVE-2006-6398 Information

Description

Multiple SQL injection vulnerabilities in Superfreaker Studios UPublisher 1.0 allow remote attackers to execute arbitrary SQL commands via unspecified vectors in (a) sendarticle.asp and (b) printarticle.asp and the ID parameter to (c) index.asp and (d) preferences.asp different vectors than CVE-2006-5888.

Reference

http://secunia.com/advisories/22840 http://www.securityfocus.com/archive/1/453462/100/0/threaded

Share on: