cve/2003/CVE-2003-0377.md
2024-06-18 02:51:15 +02:00

744 B

CVE-2003-0377

Description

SQL injection vulnerability in the web-based administration interface for iisPROTECT 2.2-r4, and possibly earlier versions, allows remote attackers to insert arbitrary SQL and execute code via certain variables, as demonstrated using the GroupName variable in SiteAdmin.ASP.

POC

Reference

Github

No PoCs found on GitHub currently.