CVE-2006-4463
Summary
| CVE | CVE-2006-4463 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-08-31 20:04:00 UTC |
| Updated | 2018-10-17 21:37:00 UTC |
| Description | SQL injection vulnerability in the administrator control panel in Jetstat.com JS ASP Faq Manager 1.10 allows remote attackers to execute arbitrary SQL commands via the pwd parameter (aka the Password field). |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Jetstat.com | Js Asp Faq Manager | 1.10 | All | All | All |
| Application | Jetstat.com | Js Asp Faq Manager | 1.10 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| SecurityReason - JS ASP Faq Manager v1.10 sql injection | SREASON | securityreason.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| JS ASP Faq Manager SQL Injection Vulnerabilities - Advisories - Secunia | SECUNIA | secunia.com | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| 28266 | OSVDB | www.osvdb.org | |
| JetStat JS ASP Faq Manager Multiple SQL Injection Vulnerabilities | BID | www.securityfocus.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.