1034613vdb entry
http://www.securitytracker.com/id/1034613 CVE-2015-8261
CRITICAL
WhatsUp Gold 16.3 - Remote Code Execution
Record summary
CVE-2015-8261 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
The DroneDeleteOldMeasurements implementation in Ipswitch WhatsUp Gold before 16.4 does not properly validate serialized XML objects, which allows remote attackers to conduct SQL injection attacks via a crafted SOAP request.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBWhatsUp Gold 16.3 - Remote Code ExecutionExploitDB exploitby Matt BuzanowskiNot analyzed1 file
References
4nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2015-8261 39231exploit
https://www.exploit-db.com/exploits/39231 VU#753264Third-party advisory
https://www.kb.cert.org/vuls/id/753264