Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-0712
Description:Multiple SQL injection vulnerabilities in zport/dmd/Events/getJSONEventsInfo in Zenoss 2.3.3, and other versions before 2.5, allow remote authenticated users to execute arbitrary SQL commands via the (1) severity, (2) state, (3) filter, (4) offset, and (5) count parameters.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-0712
BugTraq ID: 37802
http://www.securityfocus.com/bid/37802
http://dev.zenoss.org/trac/changeset/15257
http://www.ngenuity.org/wordpress/2010/01/14/ngenuity-2010-001-zenoss-getjsoneventsinfo-sql-injection/
http://osvdb.org/61804
http://secunia.com/advisories/38195
XForce ISS Database: zenoss-getjsoneventsinfo-sql-injection(55670)
https://exchange.xforce.ibmcloud.com/vulnerabilities/55670




© 1998-2025 E-Soft Inc. All rights reserved.