Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple SQL injection vulnerabilities in the login page in RXTEC RXAdmin UPDATE 06 / 2012 allow remote attackers to execute arbitrary SQL commands via the (1) loginpassword, (2) loginusername, (3) zusatzlicher, or (4) groupid parameter to index.htm, or the (5) rxtec cookie to index.htm.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
RXTEC RXAdmin UPDATE SQL注入漏洞
Vulnerability Description
RXTEC RXAdmin UPDATE是一款RXTEC(设备控制系统)用户管理更新程序。 RXTEC RXAdmin UPDATE 2012/06版本中的login页面存在SQL注入漏洞。远程攻击者可通过向index.htm页面发送多个参数或rxtec cookie利用该漏洞执行任意SQL命令。(多个参数包括:‘loginpassword’、‘loginusername’、‘zusatzlicher’、‘groupid’)
CVSS Information
N/A
Vulnerability Type
N/A