PT-2007-2020 · Asp Edge · Asp Edge

Ajann

·

Published

2007-01-30

·

Updated

2018-10-16

·

CVE-2007-0560

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions ASP EDGE versions 1.2b and earlier
Description A SQL injection issue allows remote attackers to execute arbitrary SQL commands via the user parameter in the "user.asp" file.
Recommendations For ASP EDGE versions 1.2b and earlier, avoid using the user parameter in the affected "user.asp" file until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-0560

Affected Products

Asp Edge