Arbitrary SQL Command Execution in LBE Web Helpdesk jobedit.asp

Arbitrary SQL Command Execution in LBE Web Helpdesk jobedit.asp

CVE-2004-2562 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

SQL injection vulnerability in jobedit.asp in Leigh Business Enterprises (LBE) Web Helpdesk before 4.0.0.81 allows remote attackers to execute arbitrary SQL commands via the id parameter.

Learn more about our Web App Pen Testing.