CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
AI Score
Confidence
Low
EPSS
Percentile
60.4%
Multiple SQL injection vulnerabilities in Highwall Enterprise and Highwall Endpoint 4.0.2.11045 management interface allow remote attackers to execute arbitrary SQL commands via an Access Point with a crafted SSID, and via unspecified vectors related to a malicious system operator.
Vendor | Product | Version | CPE |
---|---|---|---|
mobilesecure_inc | highwall_endpoint | 4.0.2.11045 | cpe:2.3:a:mobilesecure_inc:highwall_endpoint:4.0.2.11045:*:*:*:*:*:*:* |
mobilesecure_inc | highwall_enterprise | 4.0.2.11045 | cpe:2.3:a:mobilesecure_inc:highwall_enterprise:4.0.2.11045:*:*:*:*:*:*:* |