Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-9057

Опубликовано: 16 дек. 2014
Источник: debian

Описание

SQL injection vulnerability in the XML-RPC interface in Movable Type before 5.18, 5.2.x before 5.2.11, and 6.x before 6.0.6 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
movabletype-opensourceremovedpackage
movabletype-opensourceend-of-lifesqueezepackage

Примечания

  • https://movabletype.org/news/2014/12/6.0.6.html

  • https://movabletype.org/documentation/appendices/release-notes/6.0.6.html

Связанные уязвимости

ubuntu
около 11 лет назад

SQL injection vulnerability in the XML-RPC interface in Movable Type before 5.18, 5.2.x before 5.2.11, and 6.x before 6.0.6 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

nvd
около 11 лет назад

SQL injection vulnerability in the XML-RPC interface in Movable Type before 5.18, 5.2.x before 5.2.11, and 6.x before 6.0.6 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

github
больше 3 лет назад

SQL injection vulnerability in the XML-RPC interface in Movable Type before 5.18, 5.2.x before 5.2.11, and 6.x before 6.0.6 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.