CVE-2011-4521: SQL Injection
Published Feb 21, 2012
·Updated
SQL injection vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary SQL commands via crafted string input.
Affected Software
2 affected components
Advantech Advantech WebAccess<=6.0
Advantech Advantech WebAccess=5.0
Event History
Feb 21, 2012
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-4521?
CVE-2011-4521 has a high severity rating due to its potential to allow remote attackers to execute arbitrary SQL commands.
2
How do I fix CVE-2011-4521?
To fix CVE-2011-4521, upgrade Advantech WebAccess to version 7.0 or later, which addresses the SQL injection vulnerability.
3
What software is affected by CVE-2011-4521?
CVE-2011-4521 affects Advantech WebAccess versions 5.0 and earlier, up to version 6.0.
4
What type of vulnerability is CVE-2011-4521?
CVE-2011-4521 is classified as an SQL injection vulnerability.
5
Can CVE-2011-4521 be exploited remotely?
Yes, CVE-2011-4521 can be exploited remotely by attackers to run arbitrary SQL commands.