Описание
Blind SQL Injection via GridFieldSortableHeader
Gridfield state is vulnerable to SQL injections. The vast majority of Gridfields in Silverstripe CMS are affected by this vulnerability.
An attacker with CMS access could execute an arbitrary SQL statement by adding an SQL payload in some parts of the GridField state.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2022-38148
- https://forum.silverstripe.org/c/releases
- https://github.com/FriendsOfPHP/security-advisories/blob/master/silverstripe/framework/CVE-2022-38148.yaml
- https://www.silverstripe.org/blog/tag/release
- https://www.silverstripe.org/download/security-releases
- https://www.silverstripe.org/download/security-releases/CVE-2022-38148
Пакеты
Наименование
silverstripe/framework
composer
Затронутые версииВерсия исправления
>= 4.0.0, < 4.10.11
4.10.11
Наименование
silverstripe/framework
composer
Затронутые версииВерсия исправления
>= 4.11.0, < 4.11.14
4.11.14
Связанные уязвимости
CVSS3: 8.8
nvd
около 3 лет назад
Silverstripe silverstripe/framework through 4.11 allows SQL Injection.