CVE Database
/

CVE-2011-3831

Back to search

CVE-2011-3831

Published: Jan 29, 2012

Modified: Aug 6, 2024

PUBLISHED

Description

SQL injection vulnerability in incident_attachments.php in Support Incident Tracker (aka SiT!) 3.65 allows remote attackers to execute arbitrary SQL commands via an uploaded file with a crafted file name.

VendorProductVersions

n/a

n/a

affected
n/a

References

50632
vdb-entry
x_refsource_BID
VU#576355
third-party-advisory
x_refsource_CERT-VN
45453
third-party-advisory
x_refsource_SECUNIA
77001
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now