ZDI-17-712: Advantech WebAccess rmTemplate SQL Injection Information Disclosure Vulnerability

This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Advantech WebAccess. Authentication is required to exploit this vulnerability, but can be easily bypassed.

from ZDI: Published Advisories http://ift.tt/2vtno1w

No comments:

Post a Comment