Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-4959

Опубликовано: 17 сент. 2012
Источник: debian
EPSS Низкий

Описание

SQL injection vulnerability in the addslashes method in SilverStripe 2.3.x before 2.3.12 and 2.4.x before 2.4.6, when connected to a MySQL database using far east character encodings, allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
silverstripeitppackage

Примечания

  • http://seclists.org/oss-sec/2012/q2/209

EPSS

Процентиль: 72%
0.00716
Низкий

Связанные уязвимости

nvd
больше 13 лет назад

SQL injection vulnerability in the addslashes method in SilverStripe 2.3.x before 2.3.12 and 2.4.x before 2.4.6, when connected to a MySQL database using far east character encodings, allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

github
больше 3 лет назад

SQL injection vulnerability in the addslashes method in SilverStripe 2.3.x before 2.3.12 and 2.4.x before 2.4.6, when connected to a MySQL database using far east character encodings, allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

EPSS

Процентиль: 72%
0.00716
Низкий