vendor:
UNIVERGE UM4730
by:
b0x41s
8,8
CVSS
HIGH
SQL injection login bypass
89
CWE
Product Name: UNIVERGE UM4730
Affected Version From: 11.6.0.31
Affected Version To: 11.7.9.99
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows server 2008
2016
NEC UNIVERGE UM4730 < 11.8 SQL injection
The auth_user parameter is vulnerable to SQL injection. The login can be bypassed.
Mitigation:
The WAC login page is no longer available to sql injection bypassing authentication.The fix was committed prior to releasing 11.8.