Логотип exploitDog
bind:CVE-2014-9115
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-9115

Количество 4

Количество 4

ubuntu логотип

CVE-2014-9115

около 11 лет назад

SQL injection vulnerability in the rate_picture function in include/functions_rate.inc.php in Piwigo before 2.5.5, 2.6.x before 2.6.4, and 2.7.x before 2.7.2 allows remote attackers to execute arbitrary SQL commands via the rate parameter to picture.php, related to an improper data type in a comparison of a non-numeric value that begins with a digit.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2014-9115

около 11 лет назад

SQL injection vulnerability in the rate_picture function in include/functions_rate.inc.php in Piwigo before 2.5.5, 2.6.x before 2.6.4, and 2.7.x before 2.7.2 allows remote attackers to execute arbitrary SQL commands via the rate parameter to picture.php, related to an improper data type in a comparison of a non-numeric value that begins with a digit.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2014-9115

около 11 лет назад

SQL injection vulnerability in the rate_picture function in include/fu ...

CVSS2: 7.5
EPSS: Низкий
github логотип

GHSA-344w-5936-x3fq

больше 3 лет назад

SQL injection vulnerability in the rate_picture function in include/functions_rate.inc.php in Piwigo before 2.5.5, 2.6.x before 2.6.4, and 2.7.x before 2.7.2 allows remote attackers to execute arbitrary SQL commands via the rate parameter to picture.php, related to an improper data type in a comparison of a non-numeric value that begins with a digit.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2014-9115

SQL injection vulnerability in the rate_picture function in include/functions_rate.inc.php in Piwigo before 2.5.5, 2.6.x before 2.6.4, and 2.7.x before 2.7.2 allows remote attackers to execute arbitrary SQL commands via the rate parameter to picture.php, related to an improper data type in a comparison of a non-numeric value that begins with a digit.

CVSS2: 7.5
1%
Низкий
около 11 лет назад
nvd логотип
CVE-2014-9115

SQL injection vulnerability in the rate_picture function in include/functions_rate.inc.php in Piwigo before 2.5.5, 2.6.x before 2.6.4, and 2.7.x before 2.7.2 allows remote attackers to execute arbitrary SQL commands via the rate parameter to picture.php, related to an improper data type in a comparison of a non-numeric value that begins with a digit.

CVSS2: 7.5
1%
Низкий
около 11 лет назад
debian логотип
CVE-2014-9115

SQL injection vulnerability in the rate_picture function in include/fu ...

CVSS2: 7.5
1%
Низкий
около 11 лет назад
github логотип
GHSA-344w-5936-x3fq

SQL injection vulnerability in the rate_picture function in include/functions_rate.inc.php in Piwigo before 2.5.5, 2.6.x before 2.6.4, and 2.7.x before 2.7.2 allows remote attackers to execute arbitrary SQL commands via the rate parameter to picture.php, related to an improper data type in a comparison of a non-numeric value that begins with a digit.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу