Description
|
|
Multiple vulnerabilities have been identified in CyberBuild, which may be exploited by attackers to execute arbitrary SQL commands or scripting code. These flaws are due to input validation errors in the "login.asp" and "browse0.htm" scripts that do not validate the "SessionID" and "ProductIndex" parameters, which could be exploited by malicious people to conduct SQL injection or cross site scripting attacks.
|