CVE-2015-0782: SQL Injection
SQL injection vulnerability in the ScheduleQuery method of the schedule class in Novell ZENworks Configuration Management (ZCM) allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0782?
CVE-2015-0782 is considered a critical vulnerability due to its potential for SQL injection leading to remote code execution.
How do I fix CVE-2015-0782?
To fix CVE-2015-0782, update the affected Novell ZENworks Configuration Management software to the latest version provided by the vendor.
Who is affected by CVE-2015-0782?
CVE-2015-0782 affects users of Novell ZENworks Configuration Management software that implements the ScheduleQuery method.
What kind of attacks can be executed through CVE-2015-0782?
CVE-2015-0782 allows remote attackers to execute arbitrary SQL commands, which can lead to unauthorized access to the database.
When was CVE-2015-0782 discovered?
CVE-2015-0782 was publicly disclosed in 2015, highlighting vulnerabilities in Novell's software pertaining to SQL injection.