CVE-2006-6524 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in vdateUsr.asp in EzHRS HR Assist 1.05 and earlier allows remote attackers to execute arbitrary SQL commands via the Uname (UserName) parameter.
Reference
http://secunia.com/advisories/23304 http://www.vupen.com/english/advisories/2006/4934 https://exchange.xforce.ibmcloud.com/vulnerabilities/30847 https://www.exploit-db.com/exploits/2909
Share on: