Описание
GreenSQL Firewall (greensql-fw) before 0.9.2 allows remote attackers to bypass SQL injection protection via a crafted string, possibly involving an encoded space character (%20).
Ссылки
- Exploit
- PatchVendor Advisory
- PatchVendor Advisory
- Exploit
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:greensql:greensql_firewall:0.9.2:*:*:*:*:*:*:*
EPSS
Процентиль: 39%
0.00172
Низкий
7.5 High
CVSS2
Дефекты
CWE-264
Связанные уязвимости
github
больше 3 лет назад
GreenSQL Firewall (greensql-fw) before 0.9.2 allows remote attackers to bypass SQL injection protection via a crafted string, possibly involving an encoded space character (%20).
EPSS
Процентиль: 39%
0.00172
Низкий
7.5 High
CVSS2
Дефекты
CWE-264