Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9gq7-7qp9-2c82

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.4

Описание

Multiple SQL injection vulnerabilities in the FAQ package 2.x before 2.3.6, 4.x before 4.0.5, and 5.x before 5.0.5 in Open Ticket Request System (OTRS) allow remote attackers to execute arbitrary SQL commands via crafted search parameters.

Multiple SQL injection vulnerabilities in the FAQ package 2.x before 2.3.6, 4.x before 4.0.5, and 5.x before 5.0.5 in Open Ticket Request System (OTRS) allow remote attackers to execute arbitrary SQL commands via crafted search parameters.

EPSS

Процентиль: 77%
0.0103
Низкий

9.4 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.4
ubuntu
больше 9 лет назад

Multiple SQL injection vulnerabilities in the FAQ package 2.x before 2.3.6, 4.x before 4.0.5, and 5.x before 5.0.5 in Open Ticket Request System (OTRS) allow remote attackers to execute arbitrary SQL commands via crafted search parameters.

CVSS3: 9.4
nvd
больше 9 лет назад

Multiple SQL injection vulnerabilities in the FAQ package 2.x before 2.3.6, 4.x before 4.0.5, and 5.x before 5.0.5 in Open Ticket Request System (OTRS) allow remote attackers to execute arbitrary SQL commands via crafted search parameters.

EPSS

Процентиль: 77%
0.0103
Низкий

9.4 Critical

CVSS3

Дефекты

CWE-89