Multiple SQL injection vulnerabilities in dagent/downloadreport.asp in Novell ZENworks Patch Management (ZPM) before 6.3.2.700 allow remote attackers to execute arbitrary SQL commands via the (1) agentid and (2) pass parameters.
References
Configurations
History
21 Nov 2024, 00:22
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/23243 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/21473 - | |
References | () http://www.vupen.com/english/advisories/2006/4864 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/30768 - | |
References | () https://secure-support.novell.com/KanisaPlatform/Publishing/298/3506963_f.SAL_Public.html - Vendor Advisory |
Information
Published : 2006-12-10 21:28
Updated : 2024-11-21 00:22
NVD link : CVE-2006-6450
Mitre link : CVE-2006-6450
CVE.ORG link : CVE-2006-6450
JSON object : View
Products Affected
novell
- zenworks_patch_management_server
CWE