CVE-2006-6932

Publication date

2007-01-16 23:00:00

Family

mitre

State

PUBLISHED

Description

Multiple SQL injection vulnerabilities in Image Gallery with Access Database allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to (a) dispimage.asp, or the (2) order or (3) page parameter to (b) default.asp.