WorkforceROI Xpede 4.1 allows remote attackers to execute arbitrary SQL commands and read, modify, or steal credentials from the database via the Qry parameter in the sprc.asp script.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2002-06-11T04:00:00

Updated: 2024-08-08T02:56:38.292Z

Reserved: 2002-06-11T00:00:00

Link: CVE-2002-0581

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2002-06-18T04:00:00.000

Modified: 2008-09-05T20:28:24.243

Link: CVE-2002-0581

cve-icon Redhat

No data.