CVE-2017-3221: SQL Injection
Published Jul 22, 2017
·Updated
Blind SQL injection in Inmarsat AmosConnect 8 login form allows remote attackers to access user credentials, including user names and passwords.
Affected Software
10 affected components
Inmarsat AmosConnect 8=8.0
Inmarsat AmosConnect 8=8.0.1
Inmarsat AmosConnect 8=8.0.2
Inmarsat AmosConnect 8=8.2.0
Inmarsat AmosConnect 8=8.2.1
Inmarsat AmosConnect 8=8.2.2
Inmarsat AmosConnect 8=8.3.0
Inmarsat AmosConnect 8=8.3.1
Inmarsat AmosConnect 8=8.4.0
Inmarsat AmosConnect 8=8.4.0.1
Event History
Jul 22, 2017
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-3221?
CVE-2017-3221 is classified as a critical vulnerability due to its potential to allow unauthorized access to sensitive user credentials.
2
How do I fix CVE-2017-3221?
To fix CVE-2017-3221, ensure that you update Inmarsat AmosConnect 8 to the latest version that addresses this vulnerability.
3
What kind of attack can be executed using CVE-2017-3221?
CVE-2017-3221 allows attackers to perform blind SQL injection attacks, which can result in the exposure of user credentials.
4
What versions of Inmarsat AmosConnect 8 are affected by CVE-2017-3221?
CVE-2017-3221 affects Inmarsat AmosConnect 8 versions from 8.0 to 8.4.0.1.
5
Who is at risk from CVE-2017-3221?
Organizations using the vulnerable versions of Inmarsat AmosConnect 8 are at risk of having their user credentials compromised.