Vulnerabilities > CVE-2006-5945 - Unspecified vulnerability in Mginternet CAR Site Manager

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
mginternet
exploit available

Summary

Multiple SQL injection vulnerabilities in MGinternet Car Site Manager (CSM) allow remote attackers to execute arbitrary SQL commands via the (1) p parameter to (a) csm/asp/detail.asp, or the (2) l, (3) typ, or (4) loc parameter to (b) csm/asp/listings.asp.

Vulnerable Configurations

Part Description Count
Application
Mginternet
1

Exploit-Db

  • descriptionCar Site Manager csm/asp/detail.asp p Parameter SQL Injection. CVE-2006-5945. Webapps exploit for asp platform
    idEDB-ID:29015
    last seen2016-02-03
    modified2006-11-14
    published2006-11-14
    reporterlaurent gaffie
    sourcehttps://www.exploit-db.com/download/29015/
    titleCar Site Manager csm/asp/detail.asp p Parameter SQL Injection
  • descriptionCar Site Manager csm/asp/listings.asp Multiple Parameter SQL Injection. CVE-2006-5945. Webapps exploit for asp platform
    idEDB-ID:29014
    last seen2016-02-03
    modified2006-11-14
    published2006-11-14
    reporterlaurent gaffie
    sourcehttps://www.exploit-db.com/download/29014/
    titleCar Site Manager csm/asp/listings.asp Multiple Parameter SQL Injection