10 lines
No EOL
588 B
Text
10 lines
No EOL
588 B
Text
source: https://www.securityfocus.com/bid/56409/info
|
|
|
|
VeriCentre is prone to multiple SQL-injection vulnerabilities because the application fails to properly sanitize user-supplied input before using it in an SQL query.
|
|
|
|
A successful exploit may allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database.
|
|
|
|
VeriCentre versions prior to 2.2 build 36 are vulnerable.
|
|
|
|
http://www.example.com/WebConsole/terminal/paramedit.aspx?TerminalId=%27%2bconvert%28int,@
|
|
@version%29%2b%27&ModelName=xxxx&ApplicationName=xxxx&ClusterId= |