SQL injection vulnerability in the Authentication Servlet in Symantec Sygate Management Server (SMS) version 4.1 build 1417 and earlier allows remote attackers to execute arbitrary SQL commands and bypass authentication via unknown attack vectors related to a URL.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:06
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/18689 - | |
References | () http://securityresponse.symantec.com/avcenter/security/Content/2006.02.01.html - Patch, Vendor Advisory | |
References | () http://securitytracker.com/id?1015561 - | |
References | () http://www.osvdb.org/22883 - | |
References | () http://www.securityfocus.com/bid/16452 - | |
References | () http://www.vupen.com/english/advisories/2006/0402 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/24413 - |
Information
Published : 2006-02-02 11:02
Updated : 2024-11-21 00:06
NVD link : CVE-2006-0522
Mitre link : CVE-2006-0522
CVE.ORG link : CVE-2006-0522
JSON object : View
Products Affected
symantec
- sygate_management_server
CWE