Vulnerabilities > CVE-2006-5881 - SQL Injection vulnerability in Dynamic Dataworx Nucommunity 1.0

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
dynamic-dataworx
exploit available

Summary

SQL injection vulnerability in cl_CatListing.asp in Dynamic Dataworx NuCommunity 1.0 allows remote attackers to execute arbitrary SQL commands via the cl_cat_ID parameter.

Vulnerable Configurations

Part Description Count
Application
Dynamic_Dataworx
1

Exploit-Db

descriptionNuCommunity 1.0 (cl_CatListing.asp) Remote SQL Injection Exploit. CVE-2006-5881. Webapps exploit for asp platform
fileexploits/asp/webapps/2754.pl
idEDB-ID:2754
last seen2016-01-31
modified2006-11-11
platformasp
port
published2006-11-11
reporterajann
sourcehttps://www.exploit-db.com/download/2754/
titleNuCommunity 1.0 cl_CatListing.asp Remote SQL Injection Exploit
typewebapps