CVE-2014-2934 Information

Description

Multiple SQL injection vulnerabilities in Caldera 9.20 allow remote attackers to execute arbitrary SQL commands via the tr parameter to (1) costview2/jobs.php or (2) costview2/printers.php.

Reference

http://www.kb.cert.org/vuls/id/693092

Share on: