Логотип exploitDog
bind:CVE-2015-4633
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-4633

Количество 3

Количество 3

nvd логотип

CVE-2015-4633

больше 7 лет назад

Multiple SQL injection vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x before 3.18.08, and 3.20.x before 3.20.1 allow (1) remote attackers to execute arbitrary SQL commands via the number parameter to opac-tags_subject.pl in the OPAC interface or (2) remote authenticated users to execute arbitrary SQL commands via the Filter or (3) Criteria parameter to reports/borrowers_out.pl in the Staff interface.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2015-4633

больше 7 лет назад

Multiple SQL injection vulnerabilities in Koha 3.14.x before 3.14.16, ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xv5q-r8xx-69mw

больше 3 лет назад

Multiple SQL injection vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x before 3.18.08, and 3.20.x before 3.20.1 allow (1) remote attackers to execute arbitrary SQL commands via the number parameter to opac-tags_subject.pl in the OPAC interface or (2) remote authenticated users to execute arbitrary SQL commands via the Filter or (3) Criteria parameter to reports/borrowers_out.pl in the Staff interface.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2015-4633

Multiple SQL injection vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x before 3.18.08, and 3.20.x before 3.20.1 allow (1) remote attackers to execute arbitrary SQL commands via the number parameter to opac-tags_subject.pl in the OPAC interface or (2) remote authenticated users to execute arbitrary SQL commands via the Filter or (3) Criteria parameter to reports/borrowers_out.pl in the Staff interface.

CVSS3: 9.8
4%
Низкий
больше 7 лет назад
debian логотип
CVE-2015-4633

Multiple SQL injection vulnerabilities in Koha 3.14.x before 3.14.16, ...

CVSS3: 9.8
4%
Низкий
больше 7 лет назад
github логотип
GHSA-xv5q-r8xx-69mw

Multiple SQL injection vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x before 3.18.08, and 3.20.x before 3.20.1 allow (1) remote attackers to execute arbitrary SQL commands via the number parameter to opac-tags_subject.pl in the OPAC interface or (2) remote authenticated users to execute arbitrary SQL commands via the Filter or (3) Criteria parameter to reports/borrowers_out.pl in the Staff interface.

CVSS3: 9.8
4%
Низкий
больше 3 лет назад

Уязвимостей на страницу