Back to search
CVE-2007-1882
Published: Apr 6, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
qcbin/servlet/tdservlet/TDAPI_GeneralWebTreatment in HP Mercury Quality Center 9.0 build 9.1.0.4352 allows remote authenticated users to execute arbitrary SQL commands via the RunQuery method.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
24730
third-party-advisory
x_refsource_SECUNIA
34630
vdb-entry
x_refsource_OSVDB
20070403 HP Mercury Quality Center Any SQL execution
mailing-list
x_refsource_FULLDISC
ADV-2007-1246
vdb-entry
x_refsource_VUPEN
2527
third-party-advisory
x_refsource_SREASON
1017842
vdb-entry
x_refsource_SECTRACK
hpmercuryquality-sql-command-execution(33385)
vdb-entry
x_refsource_XF
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now