Lucene search

K
cvelistMitreCVELIST:CVE-2015-5459
HistoryJul 08, 2015 - 3:00 p.m.

CVE-2015-5459

2015-07-0815:00:00
mitre
www.cve.org
2

AI Score

7.9

Confidence

Low

EPSS

0.008

Percentile

82.2%

SQL injection vulnerability in the AdvanceSearch.class in AdventNetPassTrix.jar in ManageEngine Password Manager Pro (PMP) before 8.1 Build 8101 allows remote authenticated users to execute arbitrary SQL commands via the ANDOR parameter, as demonstrated by a request to STATE_ID/1425543888647/SQLAdvancedALSearchResult.cc.

AI Score

7.9

Confidence

Low

EPSS

0.008

Percentile

82.2%

Related for CVELIST:CVE-2015-5459