Multiple SQL injection vulnerabilities in While You Were Out (WYWO) InOut Board 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the num parameter in (a) phonemessage.asp, (2) the catcode parameter in (b) faqDsp.asp, and the (3) Username and (4) Password fields in (c) login.asp.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2007-01-03T02:00:00

Updated: 2024-08-07T20:42:07.641Z

Reserved: 2007-01-02T00:00:00

Link: CVE-2006-6846

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2006-12-31T05:00:00.000

Modified: 2024-11-21T00:23:47.243

Link: CVE-2006-6846

cve-icon Redhat

No data.