CVE-2008-1354 Information

Description

SQL injection vulnerability in MyIssuesView.asp in Advanced Data Solutions Virtual Support Office-XP (VSO-XP) allows remote attackers to execute arbitrary SQL commands via the Issue_ID parameter.

Reference

http://forum.aria-security.com/showthread.php?p=21 http://marc.info/?l=bugtraq&m=120545152114985&w=2 http://secunia.com/advisories/29365 http://www.securityfocus.com/bid/28247 https://exchange.xforce.ibmcloud.com/vulnerabilities/41206

Share on: