RULE(RULE ID:305555)

Rule General Information
Release Date: 2017-06-14
Rule Name: WEB-SQL-INJECTION SQL Injection Attempt Using SELECT FROM -3
Severity:
CVE ID:
Rule Protection Details
Description: SQL injection is a vulnerability that allows an attacker to alter backend SQL statements by manipulating the user input. An SQL injection occurs when web applications accept user input that is directly placed into a SQL statement and doesn't properly filter out dangerous characters.
Impact: An attacker can inject arbitrary sql commands to view or change the database of the target by exploiting the vulnerability successfully.
Affected OS: Windows, Solaris, Other Unix, FreeBSD, Linux
Reference: SecurityFocusBID:77295
SecurityTrackerID:1033950
ExploitDB:38797
Solutions
The vendor has updated advisory on its official website. Please check it for more information.