Home
HIGH: 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NDefault status
unaffected
<1.4.3.3 (custom)
affected
Default status
unaffected
<1.4.3.3 (custom)
affected
Description
This vulnerability allows unauthenticated attackers to inject an SQL request into GET request parameters and directly query the underlying database.
Product status
<1.4.3.3 (custom)
<1.4.3.3 (custom)
References
www.zenitel.com/.../A100K12333 Zenitel Security Advisory.pdf (Zenitel Security Advisory)