CVE

Id
69376  
CVE No.
CVE-2014-2081  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in the login in web_reports/cgi-bin/InfoStation.cgi in Innovative vtls-Virtua before 2013.2.4 and 2014.x before 2014.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter.  
Phase
Assigned (20140219)  
Votes
None (candidate not yet proposed)  
Comments