Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4wcr-6rhv-9fh4

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

The pluggable authentication module for mysql (pam_mysql) before 0.4.7 does not properly cleanse user input when constructing SQL statements, which allows attackers to obtain plaintext passwords or hashes.

The pluggable authentication module for mysql (pam_mysql) before 0.4.7 does not properly cleanse user input when constructing SQL statements, which allows attackers to obtain plaintext passwords or hashes.

EPSS

Процентиль: 64%
0.00489
Низкий

Связанные уязвимости

nvd
больше 24 лет назад

The pluggable authentication module for mysql (pam_mysql) before 0.4.7 does not properly cleanse user input when constructing SQL statements, which allows attackers to obtain plaintext passwords or hashes.

EPSS

Процентиль: 64%
0.00489
Низкий