Description
Multiple SQL injection vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.
References (2)
Core 2
Core References
US Government Resource third-party-advisory
x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/427547
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/56427
Scores
EPSS
0.0125
EPSS Percentile
66.2%
Details
CWE
CWE-89
Status
published
Products (2)
agilefleet/fleetcommander
< 4.0
agilefleet/fleetcommander_kiosk
< 4.0
Published
Nov 18, 2012
Tracked Since
Feb 18, 2026