CVE-2007-6517
CVE-2007-6517
SQL injection vulnerability in the forget password section (LostPwd.asp) in Eagle Software Aeries Browser Interface (ABI) 3.7.9.17 allows remote attackers to execute arbitrary SQL commands via the EmailAddress parameter. NOTE: some of these details are obtained from third party information.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://aria-security.net/forum/showthread.php?p=1174http://secunia.com/advisories/28193https://exchange.xforce.ibmcloud.com/vulnerabilities/39176http://www.osvdb.org/39383http://www.securityfocus.com/archive/1/485393/100/0/threadedhttp://www.securityfocus.com/bid/26962http://www.vupen.com/english/advisories/2007/4302