Multiple SQL injection vulnerabilities in OcoMon 1.20, and possibly earlier versions, allow remote attackers to execute arbitrary SQL commands via unknown attack vectors in an unspecified input form, a different vulnerability than CVE-2005-4664.
Link | Tags |
---|---|
http://sourceforge.net/project/showfiles.php?group_id=45554 | |
http://secunia.com/advisories/17470 | patch vendor advisory third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/23085 | vdb entry |
http://www.securityfocus.com/bid/15386 | vdb entry |
http://sourceforge.net/project/shownotes.php?release_id=369163 | |
http://www.osvdb.org/20751 | patch vdb entry |