Vulnerabilities > CVE-2006-5635 - SQL Injection vulnerability in Web Wiz Forum Search.ASP

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
web-wiz-forums
exploit available

Summary

SQL injection vulnerability in forum/search.asp in Web Wiz Forums allows remote attackers to execute arbitrary SQL commands via the KW parameter.

Exploit-Db

descriptionWeb Wiz Forum 6.34/7.x Search.ASP SQL Injection Vulnerability. CVE-2006-5635. Webapps exploit for asp platform
idEDB-ID:28869
last seen2016-02-03
modified2006-10-28
published2006-10-28
reporteralmaster
sourcehttps://www.exploit-db.com/download/28869/
titleWeb Wiz Forum 6.34/7.x Search.ASP SQL Injection Vulnerability