Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-4078

Опубликовано: 15 сент. 2008
Источник: debian
EPSS Низкий

Описание

SQL injection vulnerability in the AR/AP transaction report in (1) LedgerSMB (LSMB) before 1.2.15 and (2) SQL-Ledger 2.8.17 and earlier allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sql-ledgerunfixedpackage

Примечания

  • Only supported behind an authenticated HTTP zone, see README.Debian

EPSS

Процентиль: 74%
0.01624
Низкий

Связанные уязвимости

ubuntu
почти 18 лет назад

SQL injection vulnerability in the AR/AP transaction report in (1) LedgerSMB (LSMB) before 1.2.15 and (2) SQL-Ledger 2.8.17 and earlier allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

nvd
почти 18 лет назад

SQL injection vulnerability in the AR/AP transaction report in (1) LedgerSMB (LSMB) before 1.2.15 and (2) SQL-Ledger 2.8.17 and earlier allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

github
больше 4 лет назад

SQL injection vulnerability in the AR/AP transaction report in (1) LedgerSMB (LSMB) before 1.2.15 and (2) SQL-Ledger 2.8.17 and earlier allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

EPSS

Процентиль: 74%
0.01624
Низкий