CVE-2007-1154: SQL Injection
SQL injection vulnerability in webSPELL allows remote attackers to execute arbitrary SQL commands via a wsauth cookie, a different vulnerability than CVE-2006-4782.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-1154?
CVE-2007-1154 is classified as a high severity vulnerability due to its potential for remote SQL injection attacks.
How do I fix CVE-2007-1154?
To fix CVE-2007-1154, it's essential to update to the latest version of webSPELL that addresses this SQL injection vulnerability.
Who is affected by CVE-2007-1154?
Users of webSPELL who have not applied security updates or are using vulnerable versions are at risk from CVE-2007-1154.
What type of attack does CVE-2007-1154 enable?
CVE-2007-1154 enables remote attackers to execute arbitrary SQL commands through the manipulation of a ws_auth cookie.
Is CVE-2007-1154 related to any other vulnerabilities?
Yes, CVE-2007-1154 is a different vulnerability than CVE-2006-4782, both of which involve SQL injection in webSPELL.