Mercury Quality Center CVE-2007-1882 SQL-Injection Vulnerability

Mercury Quality Center is prone to a sql-injection vulnerability. qcbin/servlet/tdservlet/TDAPI_GeneralWebTreatment in HP Mercury Quality Center 9.0 build 9.1.0.4352 allows remote authenticated users to execute arbitrary SQL commands via the RunQuery method.


 

Privacy Statement
Copyright 2010, SecurityFocus