Get a Pentest and security assessment of your IT network.

News

Avira.com SQL Injection and Security Filter Bypassing

Cyber Security Analyst Ebrahim Hegazy has found an Avira.com SQL Injection vulnerability. Avira.com is the famous Avira Antivirus vendors web site. Remote attackers can. inject own. SQL commands to breach the database of Av.com vulnerable application and get access to the user data or other data stored in inside the Database. The time line for the Avira vulnerability is: 2013-05-25: Vendor Notification; 2013-06-31: Vendor Fix/Patch; 2013: Vendor fix/patch/2013-06/13: Vendor fixed the flaw in a few days.”]

Source: http://securityaffairs.co/wordpress/15961/hacking/avira-com-sql-injection-and-security-filter-bypassing.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

1 day attack with DDoS booter costs $60 causing $720k in damageSecurity Affairs

News

NSA-linked Cisco exploit poses bigger threat than previously thought