CVE-2011-2080
10.05.2011, 19:55
Multiple SQL injection vulnerabilities in MediaCAST 8 and earlier allow remote attackers to execute arbitrary SQL commands via (1) a CP_ENLARGESTYLE cookie to the default URI under inventivex/managetraining/ or (2) unspecified input to authenticate_ad_setup_finished.cfm.
Vendor | Product | Version |
---|---|---|
inventivetec | mediacast | 𝑥 ≤ 8 |
𝑥
= Vulnerable software versions
References