Bugtraq mailing list archives
Re: New vulnerability in Xerox Fiery Webtools
From: laurent.hermelin () efi com
Date: Thu, 12 Nov 2009 08:21:42 -0700
There is no SQL Injection Vulnerability in WebTools as we are not using Database. MyDocs url ("/wt3/ summary.php?select=") is safe as "select" is just name of a variable and the name is nothing to do with select command in SQL. Please provide details about the Fiery model and version so that we can close this report.
Current thread:
- New vulnerability in Xerox Fiery Webtools Bernardo Luis (Nov 03)
- <Possible follow-ups>
- Re: New vulnerability in Xerox Fiery Webtools laurent . hermelin (Nov 12)