PT-2021-18008 · Fireeye · Fireeye Ex 3500 Emps
Dr. Benjamin Hess
·
Published
2021-04-01
·
Updated
2021-04-07
·
CVE-2021-28970
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
FireEye EX 3500 eMPS versions 9.0.1.923211 through 9.0.2
Description:
The issue allows remote authenticated users to conduct SQL injection attacks via the
job id parameter to the "email search feature". According to the vendor, the issue is fixed in version 9.0.3.Recommendations:
For versions 9.0.1.923211 through 9.0.2, update to version 9.0.3 to resolve the issue. As a temporary workaround, consider restricting access to the email search feature until the update is applied. Avoid using the
job id parameter in the affected feature until the issue is resolved.Exploit
Fix
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Fireeye Ex 3500 Emps