First published: Tue Jan 19 2021(Updated: )
HGiga EIP product contains SQL Injection vulnerability. Attackers can inject SQL commands into specific URL parameter (document management page) to obtain database schema and data.
Credit: twcert@cert.org.tw
Affected Software | Affected Version | How to fix |
---|---|---|
HGiga OAKlouds | >=2.0<2.0-54 | |
HGiga OAKlouds | >=3.0<3.0-54 |
OAKSv20 OAKlouds-document_v3 2.0 >= 2.0-54 OAKSv30 OAKlouds-document_v3 3.0 >= 3.0-54
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.