Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Faudhzan Rahman

#33302de 53,638
7.8CVSS total
Vulnerabilidades · 1
PT-2019-12766
7.8
2019-05-28
Petraware · Ptransformer Adc · CVE-2019-12372
**Name of the Vulnerable Software and Affected Versions** Petraware pTransformer ADC versions prior to 2.1.7.22827 **Description** The issue allows SQL Injection via the `User ID` parameter to the "login form" API endpoint. This could potentially be exploited to extract or modify sensitive data. **Recommendations** For versions prior to 2.1.7.22827, update to version 2.1.7.22827 or later to resolve the issue. As a temporary workaround, consider restricting access to the login form or validating and sanitizing the `User ID` parameter to prevent malicious input.