Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL network
low complexity
aspportal
exploit available
Published: 2006-03-22
Updated: 2018-10-18
Summary
Multiple SQL injection vulnerabilities in ASPPortal 3.1.1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the downloadid parameter in download_click.asp and (2) content_ID parameter in news/News_Item.asp; authenticated administrators can also conduct attacks via (3) user_id parameter to users/add_edit_user.asp, (4) bannerid parameter to banner_adds/banner_add_edit.asp, (5) cat_id parameter to categories/add_edit_cat.asp, (6) Content_ID parameter to News/add_edit_news.asp, (7) download_id parameter to downloads/add_edit_download.asp, (8) Poll_ID parameter to poll/add_edit_poll.asp, (9) contactid parameter to contactus/contactus_add_edit.asp, (10) sortby parameter to poll/poll_list.asp, and (11) unspecified inputs to downloads/add_edit_download.asp.
Vulnerable Configurations
Part | Description | Count |
Application | Aspportal | 3 |
Exploit-Db
description | ASPPortal <= 3.1.1 (downloadid) Remote SQL Injection Exploit. CVE-2006-1353. Webapps exploit for asp platform |
file | exploits/asp/webapps/1597.pl |
id | EDB-ID:1597 |
last seen | 2016-01-31 |
modified | 2006-03-20 |
platform | asp |
port | |
published | 2006-03-20 |
reporter | nukedx |
source | https://www.exploit-db.com/download/1597/ |
title | ASPPortal <= 3.1.1 downloadid Remote SQL Injection Exploit |
type | webapps |