Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2009-1208

Опубликовано: 01 апр. 2009
Источник: debian
EPSS Низкий

Описание

SQL injection vulnerability in auth2db 0.2.5, and possibly other versions before 0.2.7, uses the addslashes function instead of the mysql_real_escape_string function, which allows remote attackers to conduct SQL injection attacks using multibyte character encodings.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
auth2dbfixed0.2.5-2+dfsg-1.1package

EPSS

Процентиль: 69%
0.00605
Низкий

Связанные уязвимости

ubuntu
больше 16 лет назад

SQL injection vulnerability in auth2db 0.2.5, and possibly other versions before 0.2.7, uses the addslashes function instead of the mysql_real_escape_string function, which allows remote attackers to conduct SQL injection attacks using multibyte character encodings.

nvd
больше 16 лет назад

SQL injection vulnerability in auth2db 0.2.5, and possibly other versions before 0.2.7, uses the addslashes function instead of the mysql_real_escape_string function, which allows remote attackers to conduct SQL injection attacks using multibyte character encodings.

github
больше 3 лет назад

SQL injection vulnerability in auth2db 0.2.5, and possibly other versions before 0.2.7, uses the addslashes function instead of the mysql_real_escape_string function, which allows remote attackers to conduct SQL injection attacks using multibyte character encodings.

EPSS

Процентиль: 69%
0.00605
Низкий