CVE-2006-5936
SiteXpress E-Commerce System - SQL Injection via dept.asp id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5936. PoCs published by Aria-Security Team.
AI-analyzed exploit summary The provided text describes an SQL injection vulnerability in SiteXpress E-Commerce System, where the 'id' parameter in 'dept.asp' is not properly sanitized. It includes a generic example URL but lacks actual exploit code or technical details for execution.
Description
SQL injection vulnerability in dept.asp in SiteXpress E-Commerce System allows remote attackers to execute arbitrary SQL commands via the id parameter.
Exploits (1)
The provided text describes an SQL injection vulnerability in SiteXpress E-Commerce System, where the 'id' parameter in 'dept.asp' is not properly sanitized. It includes a generic example URL but lacks actual exploit code or technical details for execution.