CVE-2006-7118: SQL Injection
Published Mar 6, 2007
·Updated
SQL injection vulnerability in index.asp in DMXReady Site Engine Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the mid parameter.
Affected Software
1 affected component
DMXReady Site Engine Manager=1.0
Event History
Mar 6, 2007
CVE Published
01:19 AM
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-7118?
The severity of CVE-2006-7118 is considered high due to the potential for remote attackers to execute arbitrary SQL commands.
2
How do I fix CVE-2006-7118?
To fix CVE-2006-7118, ensure that input validation and sanitization are implemented for the mid parameter in index.asp.
3
Who is affected by CVE-2006-7118?
CVE-2006-7118 affects users of DMXReady Site Engine Manager version 1.0.
4
What type of vulnerability is CVE-2006-7118?
CVE-2006-7118 is an SQL injection vulnerability that allows attackers to manipulate SQL queries.
5
What could happen if CVE-2006-7118 is exploited?
If exploited, CVE-2006-7118 could allow attackers to retrieve, modify, or delete database contents.