You see this notification on the Trend Micro Home Network Security app:
"SQL Injection Vulnerability"
Why did this happen?
An exploit in the form of an SQL injection on Nordex Wind Turbine Web Server was detected. This exploit will inject malicious instructions to the database server through a web application.
What are its risks?
This vulnerability allows the attackers to run any command not limited to the following:
- Administrator privileges used to bypass authentication
- Modify content on the database
- Read source code from the files on the database
- A complete takeover of the database and the web server
What should I do next?
- Restrict access to different database accounts.
- Modify input validation so that every changes will require validation before it will be processed by the application.
- Download the latest firmware update from your router’s website. Show me how.
- Allow only trusted users to have network access.
What if I have more questions?
For more information about its prevention and safety measures, check out:
