Multiple SQL injection vulnerabilities in Highwall Enterprise and Highwall Endpoint 4.0.2.11045 management interface allow remote attackers to execute arbitrary SQL commands via an Access Point with a crafted SSID, and via unspecified vectors related to a malicious system operator.
Link | Tags |
---|---|
http://www.osvdb.org/29916 | vdb entry |
http://www.securityfocus.com/archive/1/449118/100/200/threaded | mailing list |
http://www.securityfocus.com/bid/20605 | vdb entry |
http://www.securityfocus.com/archive/1/449739/100/100/threaded | mailing list |