PT-2018-4962 · Sungard · Etrakit3

Publicado

2018-07-13

·

Atualizado

2019-10-09

·

CVE-2016-6566

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Sungard eTRAKiT3 version 3.2.1.17
Description The issue concerns the valueAsString parameter within the JSON payload of the ucLogin txtLoginId ClientStat POST parameter, which is not properly validated. This could allow an unauthenticated remote attacker to modify the POST request, potentially inserting a SQL query that may be executed by the backend server.
Recommendations For version 3.2.1.17, consider restricting access to the ucLogin txtLoginId ClientStat POST parameter until a fix is available, and avoid using the valueAsString parameter in the JSON payload to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

SQL injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-6566

Produtos afetados

Etrakit3