CVE-2008-0943 Information

Description

Multiple SQL injection vulnerabilities in Eagle Software Aeries Browser Interface (ABI) 3.7.2.2 allow remote attackers to execute arbitrary SQL commands via the (1) FC parameter to Comments.asp or the Term parameter to (2) Labels.asp or (3) ClassList.asp.

Reference

http://secunia.com/advisories/29053 http://securityreason.com/securityalert/3696 http://www.securityfocus.com/archive/1/488428/100/0/threaded http://www.securityfocus.com/bid/27924 https://exchange.xforce.ibmcloud.com/vulnerabilities/40757

Share on: