HTTP: NPDS CMS Revolution-13 SQL Injection

This signature detects attempts to exploit a known vulnerability against NPDS CMS Revolution-13. A successful attack can lead sql injection.

Extended Description

SQL injection vulnerability in search.php in NPDS Revolution 13 allows remote attackers to execute arbitrary SQL commands via the query parameter.

Affected Products

Npds revolution

References

CVE: CVE-2015-1400

Short Name
HTTP:SQL:INJ:NPDS-CMS-SQL-INJ
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CMS CVE-2015-1400 Injection NPDS Revolution-13 SQL
Release Date
07/13/2021
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3400
False Positive
Unknown
Vendors

Npds

CVSS Score

7.5

Found a potential security threat?