Vulnerabilities > CVE-2006-6050 - SQL Injection vulnerability in ClickTech Texas RankEm Player.ASP Tournaments.ASP
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Multiple SQL injection vulnerabilities in ClickTech Texas Rank'em allow remote attackers to execute arbitrary SQL commands via the (1) selPlayer parameter to player.asp or the (2) tournament_id parameter to tournaments.asp.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description Texas Rankem tournaments.asp tournament_id Parameter SQL Injection. CVE-2006-6050. Webapps exploit for asp platform id EDB-ID:29094 last seen 2016-02-03 modified 2006-11-18 published 2006-11-18 reporter Aria-Security Team source https://www.exploit-db.com/download/29094/ title Texas Rankem tournaments.asp tournament_id Parameter SQL Injection description Texas Rankem player.asp selPlayer Parameter SQL Injection. CVE-2006-6050. Webapps exploit for asp platform id EDB-ID:29093 last seen 2016-02-03 modified 2006-11-18 published 2006-11-18 reporter Aria-Security Team source https://www.exploit-db.com/download/29093/ title Texas Rankem player.asp selPlayer Parameter SQL Injection