SQL injection vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
                
            References
                    Configurations
                    History
                    21 Nov 2024, 02:48
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://www.zerodayinitiative.com/advisories/ZDI-16-236 - | |
| References | () http://www.zerodayinitiative.com/advisories/ZDI-16-237 - | |
| References | () http://www.zerodayinitiative.com/advisories/ZDI-16-238 - | |
| References | () http://www.zerodayinitiative.com/advisories/ZDI-16-239 - | |
| References | () http://www.zerodayinitiative.com/advisories/ZDI-16-240 - | |
| References | () https://ics-cert.us-cert.gov/advisories/ICSA-16-105-03 - Third Party Advisory, US Government Resource | 
Information
                Published : 2016-04-22 00:59
Updated : 2025-04-12 10:46
NVD link : CVE-2016-2299
Mitre link : CVE-2016-2299
CVE.ORG link : CVE-2016-2299
JSON object : View
Products Affected
                ecava
- integraxor
CWE
                
                    
                        
                        CWE-89
                        
            Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
