{ "schema_version": "1.4.0", "id": "GHSA-fw8j-3h2g-fxpw", "modified": "2025-04-11T03:46:09Z", "published": "2022-05-13T01:10:51Z", "aliases": [ "CVE-2011-1653" ], "details": "Multiple SQL injection vulnerabilities in the Unified Network Control (UNC) Server in CA Total Defense (TD) r12 before SE2 allow remote attackers to execute arbitrary SQL commands via vectors involving the (1) UnAssignFunctionalRoles, (2) UnassignAdminRoles, (3) DeleteFilter, (4) NonAssignedUserList, (5) DeleteReportLayout, (6) DeleteReports, and (7) RegenerateReport stored procedures.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-1653" }, { "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/66725" }, { "type": "WEB", "url": "https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=%7BCD065CEC-AFE2-4D9D-8E0B-BE7F6E345866%7D" }, { "type": "WEB", "url": "https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID={CD065CEC-AFE2-4D9D-8E0B-BE7F6E345866}" }, { "type": "WEB", "url": "http://secunia.com/advisories/44097" }, { "type": "WEB", "url": "http://securityreason.com/securityalert/8403" }, { "type": "WEB", "url": "http://securitytracker.com/id?1025353" }, { "type": "WEB", "url": "http://www.securityfocus.com/archive/1/517489/100/0/threaded" }, { "type": "WEB", "url": "http://www.securityfocus.com/archive/1/517490/100/0/threaded" }, { "type": "WEB", "url": "http://www.securityfocus.com/archive/1/517491/100/0/threaded" }, { "type": "WEB", "url": "http://www.securityfocus.com/archive/1/517493/100/0/threaded" }, { "type": "WEB", "url": "http://www.securityfocus.com/archive/1/517494/100/0/threaded" }, { "type": "WEB", "url": "http://www.securityfocus.com/archive/1/517496/100/0/threaded" }, { "type": "WEB", "url": "http://www.securityfocus.com/archive/1/517497/100/0/threaded" }, { "type": "WEB", "url": "http://www.securityfocus.com/archive/1/517498/100/0/threaded" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/47355" }, { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2011/0977" }, { "type": "WEB", "url": "http://www.zerodayinitiative.com/advisories/ZDI-11-128" }, { "type": "WEB", "url": "http://www.zerodayinitiative.com/advisories/ZDI-11-129" }, { "type": "WEB", "url": "http://www.zerodayinitiative.com/advisories/ZDI-11-130" }, { "type": "WEB", "url": "http://www.zerodayinitiative.com/advisories/ZDI-11-131" }, { "type": "WEB", "url": "http://www.zerodayinitiative.com/advisories/ZDI-11-132" }, { "type": "WEB", "url": "http://www.zerodayinitiative.com/advisories/ZDI-11-133" }, { "type": "WEB", "url": "http://www.zerodayinitiative.com/advisories/ZDI-11-134" } ], "database_specific": { "cwe_ids": [ "CWE-89" ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2011-04-18T15:00:00Z" } }