Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2c6j-6c2w-2x6q

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SQL injection vulnerability in auth2db 0.2.5, and possibly other versions before 0.2.7, uses the addslashes function instead of the mysql_real_escape_string function, which allows remote attackers to conduct SQL injection attacks using multibyte character encodings.

SQL injection vulnerability in auth2db 0.2.5, and possibly other versions before 0.2.7, uses the addslashes function instead of the mysql_real_escape_string function, which allows remote attackers to conduct SQL injection attacks using multibyte character encodings.

EPSS

Процентиль: 70%
0.00605
Низкий

Дефекты

CWE-89

Связанные уязвимости

ubuntu
около 17 лет назад

SQL injection vulnerability in auth2db 0.2.5, and possibly other versions before 0.2.7, uses the addslashes function instead of the mysql_real_escape_string function, which allows remote attackers to conduct SQL injection attacks using multibyte character encodings.

nvd
около 17 лет назад

SQL injection vulnerability in auth2db 0.2.5, and possibly other versions before 0.2.7, uses the addslashes function instead of the mysql_real_escape_string function, which allows remote attackers to conduct SQL injection attacks using multibyte character encodings.

debian
около 17 лет назад

SQL injection vulnerability in auth2db 0.2.5, and possibly other versi ...

EPSS

Процентиль: 70%
0.00605
Низкий

Дефекты

CWE-89