CVE Vulnerabilities

CVE-2007-1882

Published: Apr 06, 2007 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

qcbin/servlet/tdservlet/TDAPI_GeneralWebTreatment in HP Mercury Quality Center 9.0 build 9.1.0.4352 allows remote authenticated users to execute arbitrary SQL commands via the RunQuery method.

Affected Software

Name Vendor Start Version End Version
Mercury_quality_center Hp 9.0-build_9.1.0.4352 (including) 9.0-build_9.1.0.4352 (including)

References