Опубликовано: 07 июл. 2024
Источник: github
Github: Прошло ревью
CVSS4: 8.7
CVSS3: 6.5
Описание
EGroupware mishandles an ORDER BY clause
EGroupware before 23.1.20240624 mishandles an ORDER BY clause. This leads to json.php menuaction=EGroupware\Api\Etemplate\Widget\Nextmatch::ajax_get_rows sort.id SQL injection by authenticated users for Address Book or InfoLog sorting.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2024-40614
- https://github.com/EGroupware/egroupware/commit/553829d30cc2ccdc0e5a8c5a0e16fa03a3399a3f
- https://github.com/EGroupware/egroupware/compare/23.1.20240430...23.1.20240624
- https://github.com/EGroupware/egroupware/releases/tag/23.1.20240624
- https://help.egroupware.org/t/egroupware-maintenance-security-release-23-1-20240624/78438
- https://syss.de
- https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2024-047.txt
- https://www.syss.de/pentest-blog/sql-injection-schwachstelle-in-egroupware-syss-2024-047
Пакеты
Наименование
egroupware/egroupware
composer
Затронутые версииВерсия исправления
< 23.1.20240624
23.1.20240624
Связанные уязвимости
CVSS3: 9.8
nvd
больше 1 года назад
EGroupware before 23.1.20240624 mishandles an ORDER BY clause. This leads to json.php?menuaction=EGroupware\Api\Etemplate\Widget\Nextmatch::ajax_get_rows sort.id SQL injection by authenticated users for Address Book or InfoLog sorting.
CVSS3: 9.8
debian
больше 1 года назад
EGroupware before 23.1.20240624 mishandles an ORDER BY clause. This le ...