SQL injection vulnerability in Emerson AMS Device Manager before 13 allows remote authenticated users to gain privileges via malformed input.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1008
Reference (s):
- BID:74774
- URL: http://www.securityfocus.com/bid/74774
- http://community.emerson.com/process/emerson-exchange/operateandmanage/deltav/deltav_security/b/securitynotificationblog/archive/2015/04/16/dsn15003-2-ams-device-management-sql-injection-vulnerability
- https://ics-cert.us-cert.gov/advisories/ICSA-15-111-01

