The DroneDeleteOldMeasurements implementation in Ipswitch WhatsUp Gold before 16.4 does not properly validate serialized XML objects, which allows remote attackers to conduct SQL injection attacks via a crafted SOAP request.
Metrics
Affected Vendors & Products
References
History
Tue, 27 Aug 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Progress
Progress whatsup Gold |
|
CPEs | cpe:2.3:a:progress:whatsup_gold:16.3:*:*:*:*:*:*:* | |
Vendors & Products |
Ipswitch
Ipswitch whatsup Gold |
Progress
Progress whatsup Gold |
MITRE
Status: PUBLISHED
Assigner: certcc
Published: 2016-01-08T02:00:00
Updated: 2024-08-06T08:13:31.789Z
Reserved: 2015-11-19T00:00:00
Link: CVE-2015-8261
Vulnrichment
No data.
NVD
Status : Modified
Published: 2016-01-08T02:59:04.467
Modified: 2024-11-21T02:38:11.853
Link: CVE-2015-8261
Redhat
No data.