Description
|
|
(:An SQL injection vulnerability has been identified in the web framework of Cisco Identity Services Engine.:An authenticated remote attacker could exploit it to determine the presence and alter certain values in the database by using URLs containing specially crafted SQL commands.::This vulnerability stems from a lack of control upon SQL requests.::Cisco announces that a private exploitation code exists.)
|