IISProtect Web Administration Interface SQL Injection Vulnerability

The IISProtect web administration interface does not properly sanitize user input. This could allow for SQL injection attacks on a Microsoft IIS server running IISProtect.

Successful exploitation could result in a compromise of the IISProtect server, attacks on the database or other consequences.


 

Privacy Statement
Copyright 2010, SecurityFocus