CA Total Defense UNCWS Web Service deleteReportFilter Remote Code Execution Exploit

The UNCWS Web Service component of CA Total Defense listens for SOAP requests. The deleteReportFilter method makes use of the uncsp_DeleteFilter stored procedure, which is vulnerable to SQL Injection.
Exploit type: 
Platform: 
Vulnerabilty ID: 
CVE-2011-1653
Product Version: 
12.3
Released Date: 
Thursday, May 17, 2012 - 00:00