Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-7262

Опубликовано: 05 янв. 2014
Источник: debian

Описание

SQL injection vulnerability in the msPostGISLayerSetTimeFilter function in mappostgis.c in MapServer before 6.4.1, when a WMS-Time service is used, allows remote attackers to execute arbitrary SQL commands via a crafted string in a PostGIS TIME filter.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mapserverfixed6.4.1-1package
mapserverfixed6.0.1-3.2+deb7u2wheezypackage
mapserverfixed5.6.5-2+squeeze3squeezepackage

Примечания

  • https://github.com/mapserver/mapserver/issues/4834

Связанные уязвимости

ubuntu
около 12 лет назад

SQL injection vulnerability in the msPostGISLayerSetTimeFilter function in mappostgis.c in MapServer before 6.4.1, when a WMS-Time service is used, allows remote attackers to execute arbitrary SQL commands via a crafted string in a PostGIS TIME filter.

nvd
около 12 лет назад

SQL injection vulnerability in the msPostGISLayerSetTimeFilter function in mappostgis.c in MapServer before 6.4.1, when a WMS-Time service is used, allows remote attackers to execute arbitrary SQL commands via a crafted string in a PostGIS TIME filter.

github
больше 3 лет назад

SQL injection vulnerability in the msPostGISLayerSetTimeFilter function in mappostgis.c in MapServer before 6.4.1, when a WMS-Time service is used, allows remote attackers to execute arbitrary SQL commands via a crafted string in a PostGIS TIME filter.