CVE-2011-1562
published 2011-04-05CVE-2011-1562: Ecava IntegraXor HMI before n 3.60 (Build 4032) allows remote attackers to bypass authentication and execute arbitrary SQL statements via unspecified vectors…
PriorityP349high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.73%
74.8th percentile
Ecava IntegraXor HMI before n 3.60 (Build 4032) allows remote attackers to bypass authentication and execute arbitrary SQL statements via unspecified vectors related to a crafted POST request. NOTE: some sources have reported this issue as SQL injection, but this might not be accurate.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ecava | integraxor | <= 3.60 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/44105http://twitter.com/#%21/djrbliss/status/50685527749431296http://www.integraxor.com/blog/security-issue-20101222-0700-vulnerability-notehttp://www.integraxor.com/blog/security-issue-sql-unauthenticated-vulnerability-notehttp://www.securityfocus.com/bid/47019http://www.us-cert.gov/control_systems/pdf/ICSA-11-082-01.pdfhttp://www.vupen.com/english/advisories/2011/0761https://exchange.xforce.ibmcloud.com/vulnerabilities/66306http://secunia.com/advisories/44105http://twitter.com/#%21/djrbliss/status/50685527749431296http://www.integraxor.com/blog/security-issue-20101222-0700-vulnerability-notehttp://www.integraxor.com/blog/security-issue-sql-unauthenticated-vulnerability-notehttp://www.securityfocus.com/bid/47019http://www.us-cert.gov/control_systems/pdf/ICSA-11-082-01.pdfhttp://www.vupen.com/english/advisories/2011/0761https://exchange.xforce.ibmcloud.com/vulnerabilities/66306
2011-04-05
Published