Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mh6x-m6m9-2rgr

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SQL injection vulnerability in the drawAdminTools_PackageInstaller function in shared/inc/forms/packager.php in Domain Technologie Control (DTC) before 0.32.11 allows remote authenticated users to execute arbitrary SQL commands via the database_name parameter.

SQL injection vulnerability in the drawAdminTools_PackageInstaller function in shared/inc/forms/packager.php in Domain Technologie Control (DTC) before 0.32.11 allows remote authenticated users to execute arbitrary SQL commands via the database_name parameter.

EPSS

Процентиль: 56%
0.00338
Низкий

Дефекты

CWE-89

Связанные уязвимости

ubuntu
почти 12 лет назад

SQL injection vulnerability in the drawAdminTools_PackageInstaller function in shared/inc/forms/packager.php in Domain Technologie Control (DTC) before 0.32.11 allows remote authenticated users to execute arbitrary SQL commands via the database_name parameter.

nvd
почти 12 лет назад

SQL injection vulnerability in the drawAdminTools_PackageInstaller function in shared/inc/forms/packager.php in Domain Technologie Control (DTC) before 0.32.11 allows remote authenticated users to execute arbitrary SQL commands via the database_name parameter.

debian
почти 12 лет назад

SQL injection vulnerability in the drawAdminTools_PackageInstaller fun ...

EPSS

Процентиль: 56%
0.00338
Низкий

Дефекты

CWE-89