Record summary

CVE-2011-4801 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.

Description

SQL injection vulnerability in akeyActivationLogin.do in Authenex Web Management Control in Authenex Strong Authentication System (ASAS) Server 3.1.0.2 and 3.1.0.3 allows remote attackers to execute arbitrary SQL commands via the username parameter.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBAuthenex A-Key/ASAS Web Management Control 3.1.0.2 - Blind SQL InjectionExploitDB exploitby Jose Carlos de ArribaNot analyzed1 file
ExploitDB

PoC details

References

4