Описание
SQL injection vulnerability in main.php in Enterprise Heart Enterprise Connector 1.0.2 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the loginid parameter, a different vulnerability than CVE-2005-3875.
SQL injection vulnerability in main.php in Enterprise Heart Enterprise Connector 1.0.2 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the loginid parameter, a different vulnerability than CVE-2005-3875.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2005-4563
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23845
- http://marc.info/?l=full-disclosure&m=113510305413525&w=2
- http://secunia.com/advisories/17743
- http://securityreason.com/securityalert/278
- http://www.osvdb.org/22163
- http://www.securityfocus.com/archive/1/419895
- http://www.securityfocus.com/bid/15984
EPSS
CVE ID
Связанные уязвимости
SQL injection vulnerability in main.php in Enterprise Heart Enterprise Connector 1.0.2 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the loginid parameter, a different vulnerability than CVE-2005-3875.
EPSS