SQL injection vulnerability in the login form for LogiSense software including (1) Hawk-i Billing, (2) Hawk-i ASP and (3) DNS Manager allows remote attackers to bypass authentication via SQL code in the password field.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Dns_manager_system | Logisense | * | * |
| Hawk-i | Logisense | 5.2 (including) | 5.2 (including) |
| Hawk-i | Logisense | asp (including) | asp (including) |