| |
Vulnerability CVE-2016-8341
Published: 2017-02-13 Modified: 2017-02-14
Description: |
An issue was discovered in Ecava IntegraXor Version 5.0.413.0. The Ecava IntegraXor web server has parameters that are vulnerable to SQL injection. If the queries are not sanitized, the host's database could be subject to read, write, and delete commands. |
CVSS2 => (AV:N/AC:L/Au:N/C:P/I:P/A:P)
CVSS Base Score |
Impact Subscore |
Exploitability Subscore |
7.5/10 |
6.4/10 |
10/10 |
Exploit range |
Attack complexity |
Authentication |
Remote |
Low |
No required |
Confidentiality impact |
Integrity impact |
Availability impact |
Partial |
Partial |
Partial |
References: |
http://www.securityfocus.com/bid/95907
https://ics-cert.us-cert.gov/advisories/ICSA-17-031-02
|
|
|
closedb();
?>
Copyright 2024, cxsecurity.com
|
|
|