CVE-2006-2042

3 documents3 sources
Severity
7.5HIGH
EPSS
1.9%
top 16.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 9
Latest updateMay 1

Description

Adobe Dreamweaver 8 before 8.0.2 and MX 2004 can generate code that allows SQL injection attacks in the (1) ColdFusion, (2) PHP mySQL, (3) ASP, (4) ASP.NET, and (5) JSP server models.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

NVDadobe/dreamweaver7.0, 8.0+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-jrw9-cj7c-rq2j: Adobe Dreamweaver 8 before 82022-05-01
CVEList
CVE-2006-2042: Adobe Dreamweaver 8 before 82006-05-09