CVE-2012-2923

HIGH
CVSS v3
7.5CVSS v2
0.94% EPSS (exploit probability)
CWE-89CWE

Description

SQL injection vulnerability in news.php4 in Hypermethod eLearning Server 4G allows remote attackers to execute arbitrary SQL commands via the nid parameter.

Affected routers (1)

VendorModelMatched viaAffected versionsFixed inPatch Status
Ubiquiti Ubiquiti EdgeRouter 4 Unpatched

External references