SQL injection vulnerability in main.php in Enterprise Heart Enterprise Connector 1.0.2 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the loginid parameter, a different vulnerability than CVE-2005-3875.
References
Configurations
Information
Published : 2005-12-29 03:03
Updated : 2017-07-19 18:29
NVD link : CVE-2005-4563
Mitre link : CVE-2005-4563
JSON object : View
CWE
Products Affected
enterprise_heart
- enterprise_connector