Beveiligingsadvies
CVE-2007-5131
CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations
Beschrijving
SQL injection vulnerability in index.php in Interspire ActiveKB NX 2.x allows remote attackers to execute arbitrary SQL commands via the catId parameter in a browse action. NOTE: it was separately reported that ActiveKB 1.5 is also affected.