CVE-2006-5450

Publication date

2006-10-23 17:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in index.asp in Kinesis Interactive Cinema System (KICS) CMS allows remote attackers to execute arbitrary SQL commands via the (1) txtUsername (user) or (2) txtPassword (pass) parameters.