Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-1206
Description:SQL injection vulnerability in the password reset page in Open Web Analytics (OWA) before 1.5.5 allows remote attackers to execute arbitrary SQL commands via the owa_email_address parameter in a base.passwordResetRequest action to index.php.
Test IDs: 1.3.6.1.4.1.25623.1.0.803795  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-1206
BugTraq ID: 64774
http://www.securityfocus.com/bid/64774
Bugtraq: 20140214 [SWRX-2014-001] Open Web Analytics Pre-Auth SQL Injection (Google Search)
http://www.securityfocus.com/archive/1/531105/100/0/threaded
http://www.exploit-db.com/exploits/31738
http://www.secureworks.com/advisories/SWRX-2014-001/SWRX-2014-001.pdf
http://secunia.com/advisories/56350




© 1998-2025 E-Soft Inc. All rights reserved.