CVE-2010-1904

SQL injection vulnerability in EMC RSA Key Manager (RKM) C Client 1.5.x allows user-assisted remote attackers to execute arbitrary SQL commands via the metadata section of encrypted key data.
Configurations

Configuration 1 (hide)

cpe:2.3:a:emc:rsa_key_manager_client:1.5.0:*:*:*:*:*:*:*

History

21 Nov 2024, 01:15

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/fulldisclosure/2010-06/0078.html - Exploit () http://archives.neohapsis.com/archives/fulldisclosure/2010-06/0078.html - Exploit
References () http://seclists.org/bugtraq/2011/Jan/138 - () http://seclists.org/bugtraq/2011/Jan/138 -
References () http://secunia.com/advisories/43057 - () http://secunia.com/advisories/43057 -
References () http://www.securityfocus.com/archive/1/511654/100/0/threaded - () http://www.securityfocus.com/archive/1/511654/100/0/threaded -
References () http://www.securityfocus.com/bid/40553 - () http://www.securityfocus.com/bid/40553 -
References () http://www.securitytracker.com/id?1024059 - () http://www.securitytracker.com/id?1024059 -
References () http://www.securitytracker.com/id?1024989 - () http://www.securitytracker.com/id?1024989 -
References () http://www.vupen.com/english/advisories/2011/0206 - () http://www.vupen.com/english/advisories/2011/0206 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/59133 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/59133 -

Information

Published : 2010-06-07 17:12

Updated : 2024-11-21 01:15


NVD link : CVE-2010-1904

Mitre link : CVE-2010-1904

CVE.ORG link : CVE-2010-1904


JSON object : View

Products Affected

emc

  • rsa_key_manager_client
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')