Loading
Generated remediation guidance and an executive summary. No account required.
SQL injection vulnerability in the LoginServlet page in SolarWinds Storage Manager before 5.1.2, SolarWinds Storage Profiler before 5.1.2, and SolarWinds Backup Profiler before 5.1.2 allows remote attackers to execute arbitrary SQL commands via the loginName field.
Use CWE-89, Solarwinds vendor hub and Backup Profiler product page to widen CVE-2012-2576 into its surrounding weakness, vendor, and product context.