HIGH
SQL injection vulnerability in the Help Desk application in Wave EMBASSY Remote Administration Server (ERAS) allows remote authenticated users to execute arbitrary SQL commands via the ct100$4MainController$TextBoxSearchValue parameter (aka the search field), leading to execution of operating-system commands
Published Jul 15, 2013
9.0
HIGHCVSS 2.0
EPSS 2.46%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.