SQL injection vulnerability in eClient 7.3.2.3 in Enspire Distribution Management Solution 7.3.2.7 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/402731 | US Government Resource |
http://secunia.com/advisories/46638 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2011-11-01 12:55
Updated : 2012-02-28 21:00
NVD link : CVE-2011-1915
Mitre link : CVE-2011-1915
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
infor
- eclient
- enspire_distribution_management_solution