Description
The login form of baltic-it TOPqw Webportal v1.35.283.2 (fixed in version 1.35.283.4) at /Apps/TOPqw/Login.aspx is vulnerable to SQL injection. The vulnerability exists in the POST parameter txtUsername, which allows for manipulation of SQL queries.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://cyber.wtf/2024/11/11/topqw-webportal-cves/ |
|
History
Thu, 21 Nov 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Balticit
Balticit topwq |
|
| Weaknesses | CWE-89 | |
| CPEs | cpe:2.3:a:balticit:topwq:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Balticit
Balticit topwq |
|
| Metrics |
cvssV3_1
|
Wed, 13 Nov 2024 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The login form of baltic-it TOPqw Webportal v1.35.283.2 (fixed in version 1.35.283.4) at /Apps/TOPqw/Login.aspx is vulnerable to SQL injection. The vulnerability exists in the POST parameter txtUsername, which allows for manipulation of SQL queries. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-21T21:48:47.183Z
Reserved: 2024-09-11T00:00:00.000Z
Link: CVE-2024-45876
Updated: 2024-11-20T19:40:07.504Z
Status : Awaiting Analysis
Published: 2024-11-13T21:15:28.923
Modified: 2024-11-21T22:15:08.170
Link: CVE-2024-45876
No data.
OpenCVE Enrichment
No data.
Weaknesses