CVE-2012-2601

Description

SQL injection vulnerability in WrVMwareHostList.asp in Ipswitch WhatsUp Gold 15.02 allows remote attackers to execute arbitrary SQL commands via the sGroupList parameter.

Risk Information

Base Score
7.3
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
EPSS Score
Exploitation Probability
16.692

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2012-4344,CVE-2012-2601 are affected in WhatsUp Gold 15.02Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234