Lucene search

K
cvelistMitreCVELIST:CVE-2006-2053
HistoryApr 26, 2006 - 8:00 p.m.

CVE-2006-2053

2006-04-2620:00:00
mitre
www.cve.org
2

AI Score

8.3

Confidence

Low

EPSS

0.006

Percentile

78.9%

Multiple SQL injection vulnerabilities in QuickEStore 7.9 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the OrderID parameter in (a) shipping.cfm and (b) checkout.cfm, (2) ItemID parameter in © proddetail.cfm, (3) SubCatID parameter in (d) index.cfm, the (4) CategoryID parameter in (e) prodpage.cfm, and (5) ProdID parameter in (f) Details.cfm. NOTE: these issues can also be exploited for path disclosure.

AI Score

8.3

Confidence

Low

EPSS

0.006

Percentile

78.9%

Related for CVELIST:CVE-2006-2053