CVE-2006-2042: SQL Injection
Published May 9, 2006
·Updated
Adobe Dreamweaver 8 before 8.0.2 and MX 2004 can generate code that allows SQL injection attacks in the (1) ColdFusion, (2) PHP mySQL, (3) ASP, (4) ASP.NET, and (5) JSP server models.
Affected Software
2 affected components
Adobe Dreamweaver=7.0
Adobe Dreamweaver=8.0
Remediation
Event History
May 9, 2006
CVE Published
07:02 PM
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-2042?
The severity of CVE-2006-2042 is considered high due to the potential for SQL injection attacks.
2
How do I fix CVE-2006-2042?
Fixing CVE-2006-2042 involves upgrading to Adobe Dreamweaver version 8.0.2 or later.
3
Which versions of Adobe Dreamweaver are affected by CVE-2006-2042?
CVE-2006-2042 affects Adobe Dreamweaver 8 before 8.0.2 and MX 2004.
4
What types of attacks are possible due to CVE-2006-2042?
CVE-2006-2042 can allow for SQL injection attacks across multiple server models including ColdFusion, PHP mySQL, ASP, ASP.NET, and JSP.
5
Can I still use affected versions of Adobe Dreamweaver safe from CVE-2006-2042?
Using affected versions of Adobe Dreamweaver poses significant security risks and it is recommended to upgrade to a patched version.