Vulnerabilities > CVE-2002-0951 - SQL Injection vulnerability in Ruslan Communications Builder

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
ruslan-communications
critical
exploit available

Summary

SQL injection vulnerability in Ruslan <Body>Builder allows remote attackers to gain administrative privileges via a "'--" sequence in the username and password.

Vulnerable Configurations

Part Description Count
Application
Ruslan_Communications
1

Exploit-Db

descriptionRuslan Communications Builder SQL Injection Vulnerability. CVE-2002-0951. Webapps exploit for java platform
idEDB-ID:21543
last seen2016-02-02
modified2002-06-13
published2002-06-13
reporterAlexander Korchagin
sourcehttps://www.exploit-db.com/download/21543/
titleRuslan Communications Builder - SQL Injection Vulnerability