Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Cisco Integrated Management Controller Supervisor SQL Injection Vulnerability
Vulnerability Description
A vulnerability in the web framework code of Cisco Integrated Management Controller (IMC) Supervisor could allow an unauthenticated, remote attacker to execute arbitrary SQL queries. The vulnerability is due to a lack of proper validation of user-supplied input in SQL queries. An attacker could exploit this vulnerability by sending crafted URLs that contain malicious SQL statements to the affected application.
CVSS Information
N/A
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
Cisco Integrated Management Controller Supervisor SQL注入漏洞
Vulnerability Description
Cisco Integrated Management Controller(IMC)Supervisor是美国思科(Cisco)公司的一套用于对UCS(统一计算系统)进行管理的工具,它支持HTTP、SSH访问等,并可对服务器进行开机、关机和重启等操作。 Cisco IMC Supervisor中的Web框架代码存在SQL注入漏洞。远程攻击者可利用该漏洞执行任意SQL查询语句。
CVSS Information
N/A
Vulnerability Type
N/A