vendor:
getIntranet
by:
7.5
CVSS
HIGH
Input Validation
20
CWE
Product Name: getIntranet
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
getSolutions getIntranet Multiple Remote Input Validation Vulnerabilities
Multiple remote input validation vulnerabilities in getSolutions getIntranet allow SQL injection attacks, HTML injection attacks, arbitrary file uploads, privilege escalation, command execution in the context of the vulnerable application, and command execution in the context of the affected system.
Mitigation:
Implement proper input validation and sanitization to prevent SQL injection, HTML injection, and other attacks. Regularly update and patch the application to address any vulnerabilities.