Unrated severityNVD Advisory· Published Jun 22, 2005· Updated Apr 16, 2026
CVE-2005-1250
CVE-2005-1250
Description
SQL injection vulnerability in the logon screen of the web front end (NmConsole/Login.asp) for IpSwitch WhatsUp Professional 2005 SP1 allows remote attackers to execute arbitrary SQL commands via the (1) User Name field (sUserName parameter) or (2) Password (sPassword parameter).
Affected products
1- cpe:2.3:a:ipswitch:whatsup:professional_2005_sp1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.idefense.com/application/poi/displaynvdPatchVendor Advisory
- www.ipswitch.com/forums/shwmessage.aspxnvdPatchVendor Advisory
- secunia.com/secunia_research/2005-13/advisory/nvd
- www.corsaire.com/advisories/c050323-001.txtnvd
News mentions
0No linked articles in our index yet.