SQL injection vulnerabilities in the Web Reports Server for SurfControl SuperScout WebFilter allow remote attackers to execute arbitrary SQL queries via the RunReport option to SimpleBar.dll, and possibly other DLLs.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Superscout_web_filter | Surfcontrol | 3.0 (including) | 3.0 (including) |
Superscout_web_filter | Surfcontrol | 3.0.3 (including) | 3.0.3 (including) |
Web_filter | Surfcontrol | 4.0 (including) | 4.0 (including) |
Web_filter | Surfcontrol | 4.1 (including) | 4.1 (including) |