CVE-2012-2601

SQL injection vulnerability in WrVMwareHostList.asp in Ipswitch WhatsUp Gold 15.02 allows remote attackers to execute arbitrary SQL commands via the sGroupList parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:progress:whatsup_gold:15.02:*:*:*:*:*:*:*

History

21 Nov 2024, 01:39

Type Values Removed Values Added
References () http://www.exploit-db.com/exploits/20035 - Exploit () http://www.exploit-db.com/exploits/20035 - Exploit
References () http://www.kb.cert.org/vuls/id/777007 - US Government Resource () http://www.kb.cert.org/vuls/id/777007 - US Government Resource
References () http://www.securityfocus.com/bid/54626 - Exploit () http://www.securityfocus.com/bid/54626 - Exploit
References () http://www.securitytracker.com/id?1027325 - () http://www.securitytracker.com/id?1027325 -
References () http://www.whatsupgold.com/blog/2012/07/23/keeping-whatsup-gold-secure/ - Vendor Advisory () http://www.whatsupgold.com/blog/2012/07/23/keeping-whatsup-gold-secure/ - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/77152 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/77152 -

27 Aug 2024, 17:48

Type Values Removed Values Added
First Time Progress
Progress whatsup Gold
CPE cpe:2.3:a:ipswitch:whatsup_gold:15.02:*:*:*:*:*:*:* cpe:2.3:a:progress:whatsup_gold:15.02:*:*:*:*:*:*:*

Information

Published : 2012-08-15 22:55

Updated : 2024-11-21 01:39


NVD link : CVE-2012-2601

Mitre link : CVE-2012-2601

CVE.ORG link : CVE-2012-2601


JSON object : View

Products Affected

progress

  • whatsup_gold
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')