Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in WrVMwareHostList.asp in Ipswitch WhatsUp Gold 15.02 allows remote attackers to execute arbitrary SQL commands via the sGroupList parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ipswitch WhatsUp Gold ‘sGroupList’参数SQL注入漏洞
Vulnerability Description
Ipswitch WhatsUp Gold是美国Ipswitch公司的一套统一的基础设施和应用监控软件。该软件支持对网络、服务器、虚拟环境和应用程序的性能进行管理等。 Ipswitch WhatsUp Gold中存在SQL注入漏洞,该漏洞源于“WrVMwareHostList.asp”未正确过滤用户提交给sGroupList参数的数据。攻击者可利用该漏洞操控应用程序,访问或修改数据,或在底层数据库中利用该漏洞。WhatsUp Gold 15.0.2版本中存在漏洞,其他版本中也可能受到影响。
CVSS Information
N/A
Vulnerability Type
N/A