CVE-2009-5102

Atcom Netvolution - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in default.asp in ATCOM Netvolution 1.0 ASP allows remote attackers to execute arbitrary SQL commands via the bpe_nid parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Ellinas · textwebappsasp
https://www.exploit-db.com/exploits/7761

References (1)

Core 1
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/7761/

Scores

EPSS 0.0071
EPSS Percentile 72.3%

Details

CWE
CWE-89
Status published
Products (1)
atcom/netvolution 1.0
Published Oct 21, 2011
Tracked Since Feb 18, 2026