Exploitation Summary
EIP tracks 1 public exploit for CVE-2017-11470.
AI-analyzed exploit summary This document provides a detailed technical analysis of three vulnerabilities in IDERA Uptime Monitor 7.8, including two SQL injection flaws and a directory traversal issue. It includes proof-of-concept URLs and code snippets demonstrating the vulnerabilities.
Description
IDERA Uptime Monitor 7.8 has SQL injection in /gadgets/definitions/uptime.CapacityWhatifGadget/getxenmetrics.php via the element parameter.
Exploits (1)
This document provides a detailed technical analysis of three vulnerabilities in IDERA Uptime Monitor 7.8, including two SQL injection flaws and a directory traversal issue. It includes proof-of-concept URLs and code snippets demonstrating the vulnerabilities.
References (1)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H