>> Hitachi HITSENSER Data Mart Server Remote SQL Injection Vulnerability
Title : Hitachi HITSENSER Data Mart Server Remote SQL Injection Vulnerability VUPEN ID : VUPEN/ADV-2006-0266 CVE ID : CVE-2006-0329
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-01-20
Technical Description
A vulnerability has been identified in Hitachi HITSENSER Data Mart Server, which may be exploited by remote attackers to execute arbitrary SQL commands. This flaw is due to an input validation error in the configuration functionality that does not properly validate certain parameters, which could be exploited by remote attackers to bypass the authentication procedure and gain unauthorized access to the application.