IdevSpot iSupport "x_category" Parameter SQL Injection

Thursday, July 7, 2011


iSupport is a PHP-based application used for help desk and support ticketing. The application is exposed to an SQL injection issue because it fails to properly sanitize user-supplied input submitted to the "x_category" parameter of the "index.php" script. iSupport versions 1.8 and prior are affected.

Ref: http://www.securityfocus.com/bid/48402/discuss

11.27.21 CVE: Not Available
Platform: Web Application - SQL Injection

0 comments:

Most Recent Post

MORE ON ARCHIVE
Widget by Mad Tomato

Help Me Expose This Article in Bulk!

Bookmark & Share

- OR -

SELECT YOUR PREFERRED ONE:

Bookmark and Share