Multiple SQL injection vulnerabilities in CARE 2002 before beta 1.0.02 allow remote attackers to perform unauthorized database operations.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/5219 | Exploit Patch Vendor Advisory |
http://www.iss.net/security_center/static/9553.php | Patch Vendor Advisory |
http://archives.neohapsis.com/archives/bugtraq/2002-07/0128.html | |
http://www.care2x.com/modul.php?thispage=headlines&m_titel=NEWS&m_item=Headlines&lang=en |
Configurations
Configuration 1 (hide)
|
Information
Published : 2002-10-03 21:00
Updated : 2008-09-05 13:29
NVD link : CVE-2002-0999
Mitre link : CVE-2002-0999
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
care_2002
- care_2002