CVE-2006-6349

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
07/12/2006
Last modified:
09/04/2025

Description

Multiple SQL injection vulnerabilities in PWP Technologies The Classified Ad System allow remote attackers to execute arbitrary SQL commands via (1) the main parameter in a view action (includes/mainpage/view.asp) in default.asp or (2) a query in the search engine.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:pwp_technologies:the_classified_ad_system:*:*:*:*:*:*:*:*