CVE

Id
17645  
CVE No.
CVE-2006-1541  
Status
Candidate  
Description
SQL injection vulnerability in Default.asp in EzASPSite 2.0 RC3 and earlier allows remote attackers to execute arbitrary SQL commands and obtain the SHA1 hash of the admin password via the Scheme parameter.  
Phase
Assigned (20060330)  
Votes
None (candidate not yet proposed)  
Comments