SQL injection vulnerability in Files2Links F2L 3000 appliance 4.0.0, and possibly other versions and models, allows remote attackers to execute arbitrary SQL commands via unspecified parameters to the login page.
References
Configurations
History
21 Nov 2024, 01:12
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/fulldisclosure/2010-01/0499.html - | |
References | () http://osvdb.org/61976 - | |
References | () http://packetstormsecurity.org/1001-advisories/DDIVRT-2009-27.txt - Exploit | |
References | () http://secunia.com/advisories/38310 - Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/55950 - |
Information
Published : 2010-02-02 17:30
Updated : 2024-11-21 01:12
NVD link : CVE-2010-0469
Mitre link : CVE-2010-0469
CVE.ORG link : CVE-2010-0469
JSON object : View
Products Affected
files2links
- f2l_3000_appliance
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')