CVE-2005-1250

SQL injection vulnerability in the logon screen of the web front end (NmConsole/Login.asp) for IpSwitch WhatsUp Professional 2005 SP1 allows remote attackers to execute arbitrary SQL commands via the (1) User Name field (sUserName parameter) or (2) Password (sPassword parameter).
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:ipswitch:whatsup:professional_2005_sp1:*:*:*:*:*:*:*

Information

Published : 2005-06-21 21:00

Updated : 2008-09-05 13:48


NVD link : CVE-2005-1250

Mitre link : CVE-2005-1250


JSON object : View

Advertisement

dedicated server usa

Products Affected

ipswitch

  • whatsup