Multiple SQL injection vulnerabilities in Eagle Software Aeries Browser Interface (ABI) 3.7.2.2 allow remote malicious users to execute arbitrary SQL commands via the (1) FC parameter to Comments.asp, or the Term parameter to (2) Labels.asp or (3) ClassList.asp.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
aeries aeries student information system 3.7.2.2 |
||
aeries aeries student information system 3.8.2.8 |