Unrated severityNVD Advisory· Published Oct 17, 2019· Updated Aug 5, 2024
CVE-2019-17117
CVE-2019-17117
Description
A SQL injection vulnerability in processPref.jsp in WiKID 2FA Enterprise Server through 4.2.0-b2053 allows an authenticated user to execute arbitrary SQL commands via the processPref.jsp key parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- WiKID/2FA Enterprise Serverdescription
- Range: <=4.2.0-b2053
Patches
Vulnerability mechanics
References
3- packetstormsecurity.com/files/154912/WiKID-Systems-2FA-Enterprise-Server-4.2.0-b2032-SQL-Injection-XSS-CSRF.htmlmitrex_refsource_MISC
- seclists.org/fulldisclosure/2019/Oct/35mitremailing-listx_refsource_FULLDISC
- www.securitymetrics.com/blog/wikid-2fa-enterprise-server-sql-injectionmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.