Multiple SQL injection vulnerabilities in Highwall Enterprise and Highwall Endpoint 4.0.2.11045 management interface allow remote attackers to execute arbitrary SQL commands via an Access Point with a crafted SSID, and via unspecified vectors related to a malicious system operator.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Highwall_endpoint | Mobilesecure_inc | 4.0.2.11045 (including) | 4.0.2.11045 (including) |
Highwall_enterprise | Mobilesecure_inc | 4.0.2.11045 (including) | 4.0.2.11045 (including) |