Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-4113

Опубликовано: 17 фев. 2012
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

SQL injection vulnerability in the Views module before 6.x-2.13 for Drupal allows remote attackers to execute arbitrary SQL commands via vectors related to "filters/arguments on certain types of views with specific configurations of arguments."

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:a:earl_miles:views:*:*:*:*:*:*:*:*
Версия до 6.x-2.12 (включая)
cpe:2.3:a:earl_miles:views:4.7.x-1.0:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x-1.1:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x-1.2:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x-1.3:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x-1.4:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x-1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x-1.6:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x-1.6:beta:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x-1.6:beta2:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x-1.6:beta3:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x-1.6:beta5:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x-1.x:dev:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:4.7.x1.5:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.0:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.1:beta:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.2:beta1:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.3:beta1:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.4:rc1:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.4-2:rc1:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.5:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.6:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.6:beta:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.6:beta2:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.6:beta3:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.6:beta4:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.6:beta5:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.7:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.8:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:5.x-1.x:dev:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:alpha1:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:alpha2:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:alpha3:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:alpha4:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:alpha5:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:beta1:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:beta2:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:beta3:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:beta4:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:rc1:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:rc2:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:rc3:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:rc4:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.0:rc5:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.1:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.2:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.3:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.4:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.5:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.6:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.7:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.8:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.9:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.10:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.11:*:*:*:*:*:*:*
cpe:2.3:a:earl_miles:views:6.x-2.x:dev:*:*:*:*:*:*
cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*

EPSS

Процентиль: 79%
0.01276
Низкий

7.5 High

CVSS2

Дефекты

CWE-89

Связанные уязвимости

ubuntu
больше 13 лет назад

SQL injection vulnerability in the Views module before 6.x-2.13 for Drupal allows remote attackers to execute arbitrary SQL commands via vectors related to "filters/arguments on certain types of views with specific configurations of arguments."

debian
больше 13 лет назад

SQL injection vulnerability in the Views module before 6.x-2.13 for Dr ...

github
около 3 лет назад

SQL injection vulnerability in the Views module before 6.x-2.13 for Drupal allows remote attackers to execute arbitrary SQL commands via vectors related to "filters/arguments on certain types of views with specific configurations of arguments."

EPSS

Процентиль: 79%
0.01276
Низкий

7.5 High

CVSS2

Дефекты

CWE-89