RSS   Vulnerabilities for 'Aipo-asp'   RSS

2011-08-19
 
CVE-2011-1342

CWE-89
 

 
SQL injection vulnerability in Aimluck Aipo before 5.1.1, and Aipo for ASP before 5.1.1, allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

 
 
CVE-2011-1341

CWE-352
 

 
Cross-site request forgery (CSRF) vulnerability in Aimluck Aipo before 4.0.4.0, and Aipo for ASP before 4.0.4.0, allows remote attackers to hijack the authentication of administrators for requests that modify data.

 

 >>> Vendor: Aimluck 3 Products
AIPO
Aipo asp
Aipo-asp


Copyright 2017, cxsecurity.com