Ecava IntegraXor before 4.1.4393 allows remote attackers to read cleartext credentials for administrative accounts via SELECT statements that leverage the guest role.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Integraxor | Ecava | * | 4.1.4390 (including) |
Integraxor | Ecava | 4.1 (including) | 4.1 (including) |
Integraxor | Ecava | 4.1.4340 (including) | 4.1.4340 (including) |
Integraxor | Ecava | 4.1.4360 (including) | 4.1.4360 (including) |
Integraxor | Ecava | 4.1.4369 (including) | 4.1.4369 (including) |
Integraxor | Ecava | 4.1.4380 (including) | 4.1.4380 (including) |