SQL Injection Vulnerability in Plixer Scrutinizer by Dell SonicWALL
CVE-2012-2962
Currently unrated
Key Information:
- Vendor
Sonicwall
- Status
- Vendor
- CVE Published:
- 30 July 2012
Badges
๐พ Exploit Exists๐ก Public PoC๐ฃ EPSS 90%
What is CVE-2012-2962?
A SQL injection vulnerability exists in the statusFilter.php script within Plixer Scrutinizer, allowing remote authenticated users to execute arbitrary SQL commands through the manipulation of the q parameter. This flaw can potentially lead to unauthorized access to the database and manipulation of sensitive data if exploited.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.