SQL injection vulnerability in logon_process.jsp in Ad Server Solutions Banner Exchange Solution Java allows remote attackers to execute arbitrary SQL commands via the (1) username (uname parameter) and (2) password (pass parameter). NOTE: some of these details are obtained from third party information.
- http://packetstorm.linuxsecurity.com/0812-exploits/bej-sql.txt
- https://www.exploit-db.com/exploits/7425
No PoCs found on GitHub currently.