WorkforceROI Xpede 4.1 allows remote malicious users to execute arbitrary SQL commands and read, modify, or steal credentials from the database via the Qry parameter in the sprc.asp script.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
workforceroi xpede 4.1 |