SQL injection vulnerability in admin.asp in FunkyASP AD System 1.1 allows remote attackers to execute arbitrary SQL commands and gain privileges via the password parameter.
References
Link | Resource |
---|---|
http://www.under9round.com/funky-asp.txt | Exploit Vendor Advisory |
http://www.funkyasp.co.uk/product.asp?prod=1¤cy=USD | Patch Vendor Advisory |
http://secunia.com/advisories/15494 | Vendor Advisory |
http://securitytracker.com/id?1014056 |
Configurations
Information
Published : 2005-05-24 21:00
Updated : 2008-09-05 13:50
NVD link : CVE-2005-1786
Mitre link : CVE-2005-1786
JSON object : View
CWE
Products Affected
funkyasp
- funkyasp_ad_system