CVE-2006-6115: SQL Injection
Published Nov 26, 2006
·Updated
SQL injection vulnerability in index.asp in fipsCMS 4.5 and earlier allows remote attackers to execute arbitrary SQL commands via the fid parameter.
Affected Software
1 affected component
fipsASP fipsCMS<=4.5
Event History
Nov 26, 2006
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
via NVD·10:07 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-6115?
CVE-2006-6115 is considered a high severity vulnerability due to its potential for remote exploitation through SQL injection.
2
How do I fix CVE-2006-6115?
To fix CVE-2006-6115, update fipsCMS to a version later than 4.5 which addresses the SQL injection vulnerability.
3
What are the potential impacts of CVE-2006-6115?
The potential impacts of CVE-2006-6115 include unauthorized access to the database, data manipulation, and execution of arbitrary SQL commands.
4
Which software versions are affected by CVE-2006-6115?
CVE-2006-6115 affects fipsCMS versions 4.5 and earlier.
5
What type of vulnerability is CVE-2006-6115?
CVE-2006-6115 is an SQL injection vulnerability that allows attackers to execute arbitrary SQL commands.