Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h936-65jc-4jcg

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SQL injection vulnerability in includes/picture.class.php in Galette 0.63, 0.63.1, 0.63.2, 0.63.3, and 0.64rc1 allows remote attackers to execute arbitrary SQL commands via the id_adh parameter to picture.php.

SQL injection vulnerability in includes/picture.class.php in Galette 0.63, 0.63.1, 0.63.2, 0.63.3, and 0.64rc1 allows remote attackers to execute arbitrary SQL commands via the id_adh parameter to picture.php.

EPSS

Процентиль: 46%
0.00235
Низкий

Дефекты

CWE-89

Связанные уязвимости

nvd
больше 13 лет назад

SQL injection vulnerability in includes/picture.class.php in Galette 0.63, 0.63.1, 0.63.2, 0.63.3, and 0.64rc1 allows remote attackers to execute arbitrary SQL commands via the id_adh parameter to picture.php.

debian
больше 13 лет назад

SQL injection vulnerability in includes/picture.class.php in Galette 0 ...

EPSS

Процентиль: 46%
0.00235
Низкий

Дефекты

CWE-89