CVE-2011-4801 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in akeyActivationLogin.do in Authenex Web Management Control in Authenex Strong Authentication System (ASAS) Server 3.1.0.2 and 3.1.0.3 allows remote attackers to execute arbitrary SQL commands via the username parameter.
Reference
http://www.exploit-db.com/exploits/18117 http://www.foregroundsecurity.com/security-advisories/101-authenex-a-keyasas-web-management-control-3102-time-based-sql-injection https://support.authenex.com/index.php?/Knowledgebase/Article/View/124/0/asas3103update2
Share on: