CVE-2011-5050
Elitecore Cyberoam Unified Threat Management < 10.01.0 - SQL Injection
Title source: ruleDescription
SQL injection vulnerability in corporate/Controller in Elitecore Technologies Cyberoam UTM before 10.01.2 build 059 allows remote authenticated administrators to execute arbitrary SQL commands via the tableid parameter. NOTE: some of these details are obtained from third party information.
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Benjamin Kunz Mejri · textwebappsphp
https://www.exploit-db.com/exploits/36473
Scores
EPSS
0.0080
EPSS Percentile
73.8%
Classification
CWE
CWE-89
Status
draft
Affected Products (5)
elitecore/cyberoam_unified_threat_management
< 10.01.0
elitecore/cyberoam_unified_threat_management
elitecore/cyberoam_unified_threat_management
elitecore/cyberoam_unified_threat_management
elitecore/cyberoam_unified_threat_management
Timeline
Published
Jan 04, 2012
Tracked Since
Feb 18, 2026