Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-28346

Опубликовано: 11 апр. 2022
Источник: redhat
CVSS3: 9.4
EPSS Низкий

Описание

An issue was discovered in Django 2.2 before 2.2.28, 3.2 before 3.2.13, and 4.0 before 4.0.4. QuerySet.annotate(), aggregate(), and extra() methods are subject to SQL injection in column aliases via a crafted dictionary (with dictionary expansion) as the passed **kwargs.

A flaw was found in the Django package, which leads to a SQL injection. This flaw allows an attacker using a crafted dictionary containing malicious SQL queries to compromise the database completely.

Отчет

Red Hat OpenStack does ship the affected version of Django, however, vulnerability is not exposed in the product as it does not make use of vulnerable code. We may update Django in a future release of OpenStack.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Ceph Storage 3graphite-webAffected
Red Hat Discoverydiscovery-server-containerAffected
Red Hat OpenStack Platform 13 (Queens)python-djangoAffected
Red Hat Satellite 6python3-djangoAffected
Red Hat Storage 3graphite-webAffected
Red Hat Update Infrastructure 4 for Cloud Providerspython-django-guardianAffected
Red Hat Update Infrastructure 4 for Cloud Providerspython-drf-nested-routersAffected
Red Hat Ansible Automation Platform 2.1 for RHEL 8automation-controllerFixedRHSA-2022:570225.07.2022
Red Hat Ansible Automation Platform 2.1 for RHEL 8python-djangoFixedRHSA-2022:570225.07.2022
Red Hat Automation Hub 4.2 for RHEL 7python3-djangoFixedRHSA-2022:570325.07.2022

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-89
https://bugzilla.redhat.com/show_bug.cgi?id=2072447Django: SQL injection in QuerySet.annotate(),aggregate() and extra()

EPSS

Процентиль: 84%
0.02413
Низкий

9.4 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 3 лет назад

An issue was discovered in Django 2.2 before 2.2.28, 3.2 before 3.2.13, and 4.0 before 4.0.4. QuerySet.annotate(), aggregate(), and extra() methods are subject to SQL injection in column aliases via a crafted dictionary (with dictionary expansion) as the passed **kwargs.

CVSS3: 9.8
nvd
около 3 лет назад

An issue was discovered in Django 2.2 before 2.2.28, 3.2 before 3.2.13, and 4.0 before 4.0.4. QuerySet.annotate(), aggregate(), and extra() methods are subject to SQL injection in column aliases via a crafted dictionary (with dictionary expansion) as the passed **kwargs.

CVSS3: 9.8
debian
около 3 лет назад

An issue was discovered in Django 2.2 before 2.2.28, 3.2 before 3.2.13 ...

CVSS3: 9.8
github
около 3 лет назад

SQL Injection in Django

CVSS3: 9.8
fstec
около 3 лет назад

Уязвимость реализации методов QuerySet.annotate(), aggregate() и extra() программной платформы для веб-приложений Django, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 84%
0.02413
Низкий

9.4 Critical

CVSS3