SQL injection vulnerability in Emerson DeltaV and DeltaV Workstations 9.3.1, 10.3.1, 11.3, and 11.3.1 and DeltaV ProEssentials Scientific Graph 5.0.0.6 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
References
Link | Resource |
---|---|
http://www.us-cert.gov/control_systems/pdf/ICSA-12-138-01.pdf | US Government Resource |
http://secunia.com/advisories/49210 | |
http://www.securityfocus.com/bid/53591 | |
http://osvdb.org/82011 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2012-06-08 11:55
Updated : 2012-10-29 21:03
NVD link : CVE-2012-1815
Mitre link : CVE-2012-1815
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
emerson
- deltav_proessentials_scientific_graph
- deltav_workstation
- deltav