Lucene search

K
cve[email protected]CVE-2006-6181
HistoryDec 01, 2006 - 12:28 a.m.

CVE-2006-6181

2006-12-0100:28:00
web.nvd.nist.gov
23
sql injection
clicktech clickcontact
default.asp
alphasort
in
orderby
remote attackers
nvd

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8.9 High

AI Score

Confidence

Low

0.037 Low

EPSS

Percentile

91.8%

Multiple SQL injection vulnerabilities in default.asp in ClickTech ClickContact allow remote attackers to execute arbitrary SQL commands via the (1) AlphaSort, (2) In, and (3) orderby parameters.

Affected configurations

NVD
Node
clicktechclickcontact

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8.9 High

AI Score

Confidence

Low

0.037 Low

EPSS

Percentile

91.8%

Related for CVE-2006-6181