CVE-2017-8002: SQL Injection
Published Jul 9, 2017
·Updated
EMC Data Protection Advisor prior to 6.4 contains multiple blind SQL injection vulnerabilities. A remote authenticated attacker may potentially exploit these vulnerabilities to gain information about the application by causing execution of arbitrary SQL commands.
Affected Software
1 affected component
EMC Data Protection Advisor<=6.3
Event History
Jul 9, 2017
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-8002?
CVE-2017-8002 has a high severity rating due to its potential for remote exploitation.
2
How do I fix CVE-2017-8002?
To fix CVE-2017-8002, upgrade to EMC Data Protection Advisor version 6.4 or later.
3
What type of vulnerability is CVE-2017-8002?
CVE-2017-8002 is a blind SQL injection vulnerability.
4
Who is affected by CVE-2017-8002?
CVE-2017-8002 affects EMC Data Protection Advisor versions prior to 6.4.
5
What can be exploited in CVE-2017-8002?
CVE-2017-8002 can be exploited by remote authenticated attackers to execute arbitrary SQL commands.