CVE-2006-6937 Information

Description

SQL injection vulnerability in displaypic.asp in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary SQL commands via the sortorder parameter.

Reference

http://aria-security.net/advisory/xtremeg.txt http://securityreason.com/securityalert/2148 http://www.osvdb.org/31507 http://www.securityfocus.com/archive/1/451786/100/0/threaded http://www.securityfocus.com/bid/21138 https://exchange.xforce.ibmcloud.com/vulnerabilities/30324

Share on: