What the vulnerability does

01Description

A SQL Injection issue was discovered in Ecava IntegraXor Versions 5.2.1231.0 and prior. The application fails to properly validate user input, which may allow for an unauthenticated attacker to remotely execute arbitrary code in the form of SQL queries.

Key dates

02Disclosure timeline

June 21, 2017 CVE published
August 5, 2024 Record updated