Computrols CBAS 18.0.0 allows Authenticated Blind SQL Injection via the id GET parameter, as demonstrated by the index.php?m=servers&a=start_pulling&id= substring.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-05-23T18:56:52

Updated: 2024-08-04T22:32:02.116Z

Reserved: 2019-04-04T00:00:00

Link: CVE-2019-10852

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-05-23T19:29:00.837

Modified: 2019-11-12T19:15:11.223

Link: CVE-2019-10852

cve-icon Redhat

No data.