First published: Tue Jul 23 2013(Updated: )
SQL injection vulnerability in the management application in Cisco Unified Operations Manager allows remote authenticated users to execute arbitrary SQL commands via an entry field, aka Bug ID CSCud80179.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Operations Manager |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-3437 is rated as a high severity vulnerability due to its ability to allow remote authenticated users to execute arbitrary SQL commands.
To fix CVE-2013-3437, upgrade to a patched version of Cisco Unified Operations Manager as provided in Cisco's security advisories.
CVE-2013-3437 affects remote authenticated users of Cisco Unified Operations Manager who can exploit the SQL injection vulnerability.
CVE-2013-3437 is a SQL injection vulnerability that allows execution of arbitrary SQL commands.
CVE-2013-3437 specifically impacts Cisco Unified Operations Manager.