Описание
SQL injection vulnerability in cisco/services/PhonecDirectory.php in Fonality Trixbox 2.2.4 allows remote attackers to execute arbitrary SQL commands via the ID parameter.
Ссылки
- Exploit
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- VDB Entry
- Exploit
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- VDB Entry
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:netfortris:trixbox:2.2.4:*:*:*:*:*:*:*
EPSS
Процентиль: 76%
0.00928
Низкий
7.5 High
CVSS2
Дефекты
CWE-89
Связанные уязвимости
github
почти 4 года назад
SQL injection vulnerability in cisco/services/PhonecDirectory.php in Fonality Trixbox 2.2.4 allows remote attackers to execute arbitrary SQL commands via the ID parameter.
EPSS
Процентиль: 76%
0.00928
Низкий
7.5 High
CVSS2
Дефекты
CWE-89