Логотип exploitDog
bind:CVE-2014-3704
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-3704

Количество 4

Количество 4

ubuntu логотип

CVE-2014-3704

больше 10 лет назад

The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.

CVSS2: 7.5
EPSS: Критический
nvd логотип

CVE-2014-3704

больше 10 лет назад

The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.

CVSS2: 7.5
EPSS: Критический
debian логотип

CVE-2014-3704

больше 10 лет назад

The expandArguments function in the database abstraction API in Drupal ...

CVSS2: 7.5
EPSS: Критический
github логотип

GHSA-f9cm-c972-9975

около 3 лет назад

The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.

EPSS: Критический

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2014-3704

The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.

CVSS2: 7.5
94%
Критический
больше 10 лет назад
nvd логотип
CVE-2014-3704

The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.

CVSS2: 7.5
94%
Критический
больше 10 лет назад
debian логотип
CVE-2014-3704

The expandArguments function in the database abstraction API in Drupal ...

CVSS2: 7.5
94%
Критический
больше 10 лет назад
github логотип
GHSA-f9cm-c972-9975

The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.

94%
Критический
около 3 лет назад

Уязвимостей на страницу