Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m57q-qwrv-4p2p

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

GreenSQL Firewall (greensql-fw), possibly before 0.9.2 or 0.9.4, allows remote attackers to bypass the SQL injection protection mechanism via a WHERE clause containing an expression such as "x=y=z", which is successfully parsed by MySQL.

GreenSQL Firewall (greensql-fw), possibly before 0.9.2 or 0.9.4, allows remote attackers to bypass the SQL injection protection mechanism via a WHERE clause containing an expression such as "x=y=z", which is successfully parsed by MySQL.

EPSS

Процентиль: 64%
0.00467
Низкий

Дефекты

CWE-89

Связанные уязвимости

nvd
больше 16 лет назад

GreenSQL Firewall (greensql-fw), possibly before 0.9.2 or 0.9.4, allows remote attackers to bypass the SQL injection protection mechanism via a WHERE clause containing an expression such as "x=y=z", which is successfully parsed by MySQL.

EPSS

Процентиль: 64%
0.00467
Низкий

Дефекты

CWE-89