|Category:||Web application abuses|
|Title:||ManageEngine Applications Manager SQL Injection Vulnerability|
|Summary:||ManageEngine Applications Manager is prone to a SQL injection;vulnerability.|
ManageEngine Applications Manager is prone to a SQL injection
ManageEngine Applications Manager is vulnerable to SQL injection via the
name parameter in a manageApplications.do request and via GraphicalView.do, as demonstrated by a
crafted viewProps yCanvas field or viewid parameter.
ManageEngine Applications Manager 13.
No solution or patch is available as of 15th November, 2017.
Information regarding this issue will be updated once the solution details are available.
Common Vulnerability Exposure (CVE) ID: CVE-2017-16542|
Common Vulnerability Exposure (CVE) ID: CVE-2017-16543
|Copyright||This script is Copyright (C) 2017 Greenbone Networks GmbH|
|This is only one of 58880 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.