7.8
CVSSv3

CVE-2019-12372

Published: 28/05/2019 Updated: 29/05/2019
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Petraware pTransformer ADC prior to 2.1.7.22827 allows SQL Injection via the User ID parameter to the login form.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

petraware ptransformer adc

Exploits

# Exploit Title: Petraware pTransformer ADC before 21722827 allows SQL Injection via the User ID parameter to the login form # Date: 28-05-2019 # Exploit Author: Faudhzan Rahman # Website: faudhzanrahmanblogspotcom/ # Vendor Homepage: wwwpetrawarecom # Version: 20 # CVE : CVE-2019-12372 # Tested on: Windows 10 Pro *Descript ...
Petraware pTransformer ADC versions prior to 21722827 suffer from a remote SQL injection vulnerability that allows for login bypass ...