First published: Tue May 09 2006(Updated: )
Adobe Dreamweaver 8 before 8.0.2 and MX 2004 can generate code that allows SQL injection attacks in the (1) ColdFusion, (2) PHP mySQL, (3) ASP, (4) ASP.NET, and (5) JSP server models.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Dreamweaver | =7.0 | |
Adobe Dreamweaver | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2006-2042 is considered high due to the potential for SQL injection attacks.
Fixing CVE-2006-2042 involves upgrading to Adobe Dreamweaver version 8.0.2 or later.
CVE-2006-2042 affects Adobe Dreamweaver 8 before 8.0.2 and MX 2004.
CVE-2006-2042 can allow for SQL injection attacks across multiple server models including ColdFusion, PHP mySQL, ASP, ASP.NET, and JSP.
Using affected versions of Adobe Dreamweaver poses significant security risks and it is recommended to upgrade to a patched version.