Remote SQL Injection against the HP Service Manager Software Web Tier, version 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, may lead to unauthorized disclosure of data.
References
Link | Resource |
---|---|
https://softwaresupport.softwaregrp.com/document/-/facetsearch/document/KM03158656 | Vendor Advisory |
http://www.securitytracker.com/id/1040902 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/104141 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-05-22 11:29
Updated : 2020-07-06 12:28
NVD link : CVE-2018-6494
Mitre link : CVE-2018-6494
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
microfocus
- service_manager