CVE

Id
23015  
CVE No.
CVE-2006-6911  
Status
Candidate  
Description
SQL injection vulnerability in search.asp in Digitizing Quote And Ordering System 1.0 allows remote authenticated users to execute arbitrary SQL commands via the ordernum parameter.  
Phase
Assigned (20070109)  
Votes
None (candidate not yet proposed)  
Comments