Vulnerabilities > Maxiasp > Burak Yilmaz Download Portal

DATE CVE VULNERABILITY TITLE RISK
2006-12-21 CVE-2006-6672 SQL-Injection vulnerability in Maxiasp Burak Yilmaz Download Portal 0
Multiple SQL injection vulnerabilities in Burak Yylmaz Download Portal allow remote attackers to execute arbitrary SQL commands via the (1) kid or possibly (2) id parameter to (a) HABERLER.ASP and (b) ASPKAT.ASP.
network
low complexity
maxiasp
7.5
2006-12-21 CVE-2006-6671 SQL Injection vulnerability in Maxiasp Burak Yilmaz Download Portal 0
SQL injection vulnerability in down.asp in Burak Yylmaz Download Portal allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
maxiasp
7.5