CVE-2006-5629 | Hosting Controller up to 6.1 disableforum.asp ForumID sql injection (EDB-4730 / Nessus ID 22902)
A vulnerability labeled as critical has been found in Hosting Controller up to 6.1. The affected element is an unknown function of the file disableforum.asp. Such manipulation of the argument ForumID leads to sql injection.
This vulnerability is referenced as CVE-2006-5629. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A patch should be applied to remediate this issue.