vendor:
Document Library
by:
L0rd CrusAd3r aka VSN
5.5
CVSS
MEDIUM
SQL Injection
89
CWE
Product Name: Document Library
Affected Version From: 5.8.2005
Affected Version To: 5.8.2005
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2010
Digital Interchange Document Library SQL Vulnerability
The Digital Interchange Document library allows you to easily and seamlessly store your documents online! The administration area is a secured area with an intuitive interface that will let you manage all of your documents from any location with an internet connection. By storing your documents in folders you setup in the Document Library, you will be able to quickly and easily organize and access the information you need most.
Mitigation:
Implement input validation and parameterized queries to prevent SQL injection attacks.