CVE-2014-2351
20.05.2014, 11:13
SQL injection vulnerability in the LiveData service in CSWorks before 2.5.5233.0 allows remote attackers to execute arbitrary SQL commands via vectors related to pathnames contained in web API requests.
Vendor | Product | Version |
---|---|---|
controlsystemworks | csworks | 𝑥 ≤ 2.5.5050.0 |
controlsystemworks | csworks | 1.0.601.0 |
controlsystemworks | csworks | 1.0.612.0 |
controlsystemworks | csworks | 1.0.623.0 |
controlsystemworks | csworks | 1.0.720.0 |
controlsystemworks | csworks | 1.0.801.0 |
controlsystemworks | csworks | 1.0.813.0 |
controlsystemworks | csworks | 1.0.901.0 |
controlsystemworks | csworks | 1.0.3540.0 |
controlsystemworks | csworks | 1.0.3560.0 |
controlsystemworks | csworks | 1.0.3580.0 |
controlsystemworks | csworks | 1.1.3600.0 |
controlsystemworks | csworks | 1.1.3674.0 |
controlsystemworks | csworks | 1.1.3700.0 |
controlsystemworks | csworks | 1.2.3730.0 |
controlsystemworks | csworks | 1.2.3800.0 |
controlsystemworks | csworks | 1.4.3820.0 |
controlsystemworks | csworks | 1.4.3830.0 |
controlsystemworks | csworks | 1.4.3850.0 |
controlsystemworks | csworks | 1.4.3860.0 |
controlsystemworks | csworks | 1.4.3880.0 |
controlsystemworks | csworks | 1.4.3900.0 |
controlsystemworks | csworks | 1.4.4000.0 |
controlsystemworks | csworks | 1.7.4050.0 |
controlsystemworks | csworks | 1.7.5000.0 |
controlsystemworks | csworks | 2.0.4115.0 |
controlsystemworks | csworks | 2.0.4115.1 |
controlsystemworks | csworks | 2.1.4386.0 |
controlsystemworks | csworks | 2.1.4560.0 |
controlsystemworks | csworks | 2.5.4770.0 |
controlsystemworks | csworks | 2.5.4770.1 |
controlsystemworks | csworks | 2.5.4912.0 |
𝑥
= Vulnerable software versions
References