CVE-2009-3642 Information

Description

Multiple SQL injection vulnerabilities in the Call Logging feature in FrontRange HEAT 8.01 allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.

Reference

http://packetstormsecurity.org/0909-exploits/heat-sql.txt http://secunia.com/advisories/36900

Share on: