CVE-2011-5050: SQL Injection
SQL injection vulnerability in corporate/Controller in Elitecore Technologies Cyberoam UTM before 10.01.2 build 059 allows remote authenticated administrators to execute arbitrary SQL commands via the tableid parameter. NOTE: some of these details are obtained from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-5050?
CVE-2011-5050 has been classified with a medium severity due to the potential for remote authenticated users to execute arbitrary SQL commands.
How do I fix CVE-2011-5050?
To fix CVE-2011-5050, upgrade the Elitecore Cyberoam UTM to version 10.01.2 build 059 or later.
Who is affected by CVE-2011-5050?
CVE-2011-5050 affects specific builds of Elitecore Cyberoam UTM, including versions CR300i-10, CR500i-10, and several builds under 10.01.0.
What type of vulnerability is CVE-2011-5050?
CVE-2011-5050 is an SQL injection vulnerability in the corporate controller of Elitecore Cyberoam UTM.
Can CVE-2011-5050 be exploited remotely?
Yes, CVE-2011-5050 can be exploited remotely by authenticated administrators to execute arbitrary SQL commands.