7.5
CVSSv2

CVE-2004-2562

Published: 31/12/2004 Updated: 14/02/2024
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in jobedit.asp in Leigh Business Enterprises (LBE) Web Helpdesk prior to 4.0.0.81 allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

leigh business enterprises web helpdesk 4.0.0.66

leigh business enterprises web helpdesk 1.2_1999-07-00

leigh business enterprises web helpdesk 4.0.0.80

leigh business enterprises web helpdesk 4.0.0.78

leigh business enterprises web helpdesk 4.0.0.75

leigh business enterprises web helpdesk 4.0.0.64

leigh business enterprises web helpdesk 4.0.0.71

leigh business enterprises web helpdesk 4.0.0.59

leigh business enterprises web helpdesk 4.0.0.72

leigh business enterprises web helpdesk 1.3_2000-07-00

leigh business enterprises web helpdesk 4.0.0.79

leigh business enterprises web helpdesk 4.0.0.53

leigh business enterprises web helpdesk 4.0.0.76

leigh business enterprises web helpdesk 4.0.0.73

leigh business enterprises web helpdesk 4.0.0.40_2001-07-21

leigh business enterprises web helpdesk 4.0.0.43_2001-09-28

leigh business enterprises web helpdesk 4.0.0.41_2001-08-27

leigh business enterprises web helpdesk 4.0.0.63

leigh business enterprises web helpdesk 4.0.0.54

leigh business enterprises web helpdesk 4.0.0.65

leigh business enterprises web helpdesk 4.0.0.52

leigh business enterprises web helpdesk 4.0.0.60

leigh business enterprises web helpdesk 4.0.0.69

leigh business enterprises web helpdesk 4.0.0.50

leigh business enterprises web helpdesk 4.0.0.67

leigh business enterprises web helpdesk 4.0.0.62

leigh business enterprises web helpdesk 1.4_2000-08-00

leigh business enterprises web helpdesk 4.0.0.68

leigh business enterprises web helpdesk 4.0.0.38_2001-06-10

leigh business enterprises web helpdesk 4.0.0.74

leigh business enterprises web helpdesk 4.0.0.77

leigh business enterprises web helpdesk 4.0_2001-03-00

leigh business enterprises web helpdesk 4.0.0.35_2001-06-04

leigh business enterprises web helpdesk 4.0.0.33_2001-05-00

leigh business enterprises web helpdesk 4.0.0.61

leigh business enterprises web helpdesk 4.0.0.70

Exploits

source: wwwsecurityfocuscom/bid/10773/info LBE Web HelpDesk is reported susceptible to an SQL injection vulnerability This issue is due to improper sanitization of user-supplied data This issue may allow a remote attacker to manipulate query logic, potentially leading to unauthorized access to sensitive information or corruption of dat ...