Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in sgms/reports/scheduledreports/configure/scheduleProps.jsp in SonicWall ViewPoint 6.0 SP2 allows remote attackers to execute arbitrary SQL commands via the scheduleID parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SonicWall Viewpoint 'scheduleID' 参数SQL注入漏洞
Vulnerability Description
SonicWALL是功能齐全的互联网安全设备,专门为满足具有不断增长的VPN 需要的大型网络而设计。 SonicWall Viewpoint 6.0 SP2及其他版本中的sgms/reports/scheduledreports/configure/scheduleProps.jsp中存在SQL注入漏洞。由于用户提供的数据被用于SQL查询之前没有经过充分的过滤,攻击者可借助scheduleID参数访问和修改数据,危害应用程序。
CVSS Information
N/A
Vulnerability Type
N/A