Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Editor Blogs > Security

January 19th, 2012, 13:30 GMT · By Eduard Kovacs

BLOG

Dusseldorf International Airport Closes Multiple SQLI Flaws

SHARE:

Adjust text size:

Dusseldorf International Airport Enlarge picture - Dusseldorf International Airport
Researchers from the Vulnerability Labs discovered a number of critical SQL Injection (SQLI) vulnerabilities on the official website of the Dusseldorf International Airport, one of the most important airports in Germany’s most important economic region.

The vulnerabilities, if unpatched, could have allowed an attacker to remotely execute his own SQL commands on one of the vulnerable modules which included the picture archive, the shopping list module and the media information module.

According to H-Security, the weaknesses could be exploited by an unauthorized user to access their entire database that includes not only login credentials and personal information on passengers and partners, but also Airliner Lounge data normally available only to employees.

Benjamin Kunz Mejri, the founder of Vulnerability Labs, revealed that that airport had been notified in April 2011 and patched up the holes a few weeks ago without notifying the researchers.

TELL US WHAT YOU THINK:

698 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Secunia Shortens Vulnerability Disclosure Deadline to Six Months

Apache Tomcat Users Advised to Update to Avoid Hash DOS Attacks

Zero-Day Vulnerability Found in McAfee’s SaaS Products (Updated)

7,000 e-Voting Machines May End Up in Irish-Themed Pubs

Sykipot Trojan Improved to Hijack DoD Smart Cards

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM