VYPR

Zenworks Patch Management Server

by Novell

CVEs (2)

  • CVE-2005-3315Oct 30, 2005
    risk 0.03cvss epss 0.05

    Multiple SQL injection vulnerabilities in Novell ZENworks Patch Management 6.x before 6.2.2.181 allow remote attackers to execute arbitrary SQL commands via the (1) Direction parameter to computers/default.asp, and the (2) SearchText, (3) StatusFilter, and (4) computerFilter…

  • CVE-2006-6450Dec 10, 2006
    risk 0.01cvss epss 0.18

    Multiple SQL injection vulnerabilities in dagent/downloadreport.asp in Novell ZENworks Patch Management (ZPM) before 6.3.2.700 allow remote attackers to execute arbitrary SQL commands via the (1) agentid and (2) pass parameters.