CVE

Id
71168  
CVE No.
CVE-2014-3872  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in the administration login page in D-Link DAP-1350 (Rev. A1) with firmware 1.14 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password.  
Phase
Assigned (20140527)  
Votes
None (candidate not yet proposed)  
Comments