|
|||
Rule General Information |
---|
Release Date: | 2020-01-20 | |
Rule Name: | Tecnovision DlxSpot SQL Injection Vulnerability (CVE-2017-12930) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | SQL Injection in the admin interface in TecnoVISION DLX Spot Player4 version >1.5.10 allows remote unauthenticated users to access the web interface as administrator via a crafted password. | |
Impact: | An attacker could exploit this vulnerability to have unspecified effect. | |
Affected OS: | Windows, Others | |
Reference: | http://packetstormsecurity.com/files/144257/DlxSpot-SQL-Injection.html |
|
Solutions |
---|
The vendors have released upgrade patches to fix vulnerabilities, please visit: http://www.tecnovision.com/ |