Security Advisory

CVE-2012-1234

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-02-21 11:00:00
Last updated 2024-09-17 01:41:31
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SQL injection vulnerability in Advantech/BroadWin WebAccess 7.0 allows remote authenticated users to execute arbitrary SQL commands via a malformed URL. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0234.