Vulnerability Details CVE-2017-6050
A SQL Injection issue was discovered in Ecava IntegraXor Versions 5.2.1231.0 and prior. The application fails to properly validate user input, which may allow for an unauthenticated attacker to remotely execute arbitrary code in the form of SQL queries.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.013
EPSS Ranking 78.6%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2017-6050
-
cpe:2.3:a:ecava:integraxor:3.5.3900.10
-
cpe:2.3:a:ecava:integraxor:3.5.3900.5
-
cpe:2.3:a:ecava:integraxor:3.6.4000.0
-
cpe:2.3:a:ecava:integraxor:3.60.4061
-
cpe:2.3:a:ecava:integraxor:3.71
-
cpe:2.3:a:ecava:integraxor:3.71.4200
-
cpe:2.3:a:ecava:integraxor:3.72
-
cpe:2.3:a:ecava:integraxor:4.00
-
cpe:2.3:a:ecava:integraxor:4.1
-
cpe:2.3:a:ecava:integraxor:4.1.4340
-
cpe:2.3:a:ecava:integraxor:4.1.4360
-
cpe:2.3:a:ecava:integraxor:4.1.4369
-
cpe:2.3:a:ecava:integraxor:4.1.4380
-
cpe:2.3:a:ecava:integraxor:4.1.4390
-
cpe:2.3:a:ecava:integraxor:4.1.4393
-
cpe:2.3:a:ecava:integraxor:4.1.4450
-
cpe:2.3:a:ecava:integraxor:4.2.4502
-
cpe:2.3:a:ecava:integraxor:5.0.413.0
-
cpe:2.3:a:ecava:integraxor:5.2.1231.0