BorG Technology Corporation Borg SPM 2007 SQL Injection Vulnerability
Vulnerability
A SQL injection vulnerability has been identified in Borg SPM 2007, a product developed by BorG Technology Corporation that is no longer sold. This vulnerability allows unauthenticated remote attackers to inject arbitrary SQL commands, enabling them to read, modify, and delete database contents.
Impact
Exploitation of this vulnerability could lead to unauthorized access and manipulation of the application's database, allowing attackers to read, alter, or delete data at will.
Remediation
Customers with active maintenance contracts are advised to contact the vendor for patching assistance or to upgrade to the latest version. Those not under a maintenance contract should reach out to the vendor to discuss further options.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
