CVE-2015-0524: SQL Injection
Published Mar 12, 2015
·Updated
SQL injection vulnerability in the Gateway Provisioning service in EMC Secure Remote Services Virtual Edition (ESRS VE) 3.02 and 3.03 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
2 affected components
EMC Secure Remote Services=3.02
EMC Secure Remote Services=3.03
Event History
Mar 12, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0524?
CVE-2015-0524 has a High severity rating due to its potential for remote SQL command execution.
2
How do I fix CVE-2015-0524?
To address CVE-2015-0524, it is recommended to upgrade to a patched version of EMC Secure Remote Services.
3
What software versions are affected by CVE-2015-0524?
The affected software versions for CVE-2015-0524 are EMC Secure Remote Services 3.02 and 3.03.
4
Can CVE-2015-0524 be exploited remotely?
Yes, CVE-2015-0524 can be exploited remotely by attackers to execute arbitrary SQL commands.
5
What type of vulnerability is CVE-2015-0524?
CVE-2015-0524 is classified as an SQL injection vulnerability.