vendor:
Samsara
by:
_mRkZ_ & Dante90, WaRWolFz Crew
8,8
CVSS
HIGH
Remote Blind SQL Injection
89
CWE
Product Name: Samsara
Affected Version From: 3.1
Affected Version To: 3.1
Patch Exists: YES
Related CWE: N/A
CPE: a:exoopport:samsara:3.1
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2010
[0-Day] E-Xoopport – Samsara <= v3.1 (Sections Module 2) Remote Blind SQL Injection Exploit
E-Xoopport is vulnerable to a Remote Blind SQL Injection vulnerability in the Sections Module. An attacker can exploit this vulnerability to gain access to the database and execute arbitrary SQL commands. This vulnerability affects versions 3.1 and earlier.
Mitigation:
Upgrade to the latest version of E-Xoopport, or apply the appropriate patch.