Intrusion Prevention

Ipswitch.WhatsUp.Professional.LOGIN.ASP.SQL.Injection

Description

This indicates an attempt to exploit a remote SQL injection vulnerability in IpSwitch Inc.'s WhatsUp Professional 2005, Service Pack 1. Successful exploitation could allow a remote attacker to gain administrative access to the application.

Affected Products

Ipswitch WhatsUp Professional 2005 SP1.

Impact

SQL injection.

Recommended Actions

Upgrade to Ipswitch WhatsUp Professional 2005 SP1a or higher.

CVE References

CVE-2005-1250