CVE

Id
22040  
CVE No.
CVE-2006-5936  
Status
Candidate  
Description
SQL injection vulnerability in dept.asp in SiteXpress E-Commerce System allows remote attackers to execute arbitrary SQL commands via the id parameter.  
Phase
Assigned (20061115)  
Votes
None (candidate not yet proposed)  
Comments