CVE-2011-5031
NONE EPSS 63.0%
Published Dec 29, 201114y ago · Modified Jun 16, 20262w ago
Published Dec 29, 2011 14y ago
Last Modified Jun 16, 2026 2w ago
Description
Multiple SQL injection vulnerabilities in servlet/capexweb.parentvalidatepassword in cApexWEB 1.1 allow remote attackers to execute arbitrary SQL commands via the (1) dfuserid and (2) dfpassword parameters. NOTE: some of these details are obtained from third party information.
Threat Intelligence
EPSS Exploit Probability
63.0% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available
Weaknesses 1
CWE-89 SQL Injection Injection
Affected Products 1
| Vendor | Product | Version | Range |
|---|---|---|---|
| shilpisoft | capexweb | 1.1 | any |
References 5
- secunia.com http://secunia.com/advisories/47285
- exploit-db.com http://www.exploit-db.com/exploits/18247
- osvdb.org http://www.osvdb.org/77998
- exchange.xforce.ibmcloud.com https://exchange.xforce.ibmcloud.com/vulnerabilities/71882
- exchange.xforce.ibmcloud.com https://exchange.xforce.ibmcloud.com/vulnerabilities/71959
Remediation
No remediation data recorded yet
Check vendor advisories and the NVD entry for patch availability.