Threat Encyclopedia

SQL Injection Vulnerabilities for Endpoint Protector

description-logoDescription

SQL injection vulnerability in the device registration component in wsf/webservice.php in CoSoSys Endpoint Protector 4 4.3.0.4 and 4.4.0.2 allows remote attackers to execute arbitrary SQL commands via unspecified parameters.

affected-products-logoAffected Products

Endpoint Protector

CVE References

CVE-2014-3932