Multiple SQL injection vulnerabilities in the login page in RXTEC RXAdmin UPDATE 06 / 2012 allow remote attackers to execute arbitrary SQL commands via the (1) loginpassword, (2) loginusername, (3) zusatzlicher, or (4) groupid parameter to index.htm, or the (5) rxtec cookie to index.htm.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-09-24T19:00:00

Updated: 2018-09-26T20:57:01

Reserved: 2015-11-19T00:00:00


Link: CVE-2015-8298

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-09-24T19:29:00.320

Modified: 2018-11-13T19:51:09.247


Link: CVE-2015-8298

JSON object: View

cve-icon Redhat Information

No data.

CWE