Логотип exploitDog
bind:CVE-2019-14900
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-14900

Количество 4

Количество 4

redhat логотип

CVE-2019-14900

больше 5 лет назад

A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 and 5.5.0.Beta1. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SELECT or GROUP BY parts of the query. This flaw could allow an attacker to access unauthorized information or possibly conduct further attacks.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2019-14900

больше 5 лет назад

A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 and 5.5.0.Beta1. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SELECT or GROUP BY parts of the query. This flaw could allow an attacker to access unauthorized information or possibly conduct further attacks.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2019-14900

больше 5 лет назад

A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 an ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-8grg-q944-cch5

почти 4 года назад

SQL Injection in Hibernate ORM

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2019-14900

A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 and 5.5.0.Beta1. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SELECT or GROUP BY parts of the query. This flaw could allow an attacker to access unauthorized information or possibly conduct further attacks.

CVSS3: 6.5
1%
Низкий
больше 5 лет назад
nvd логотип
CVE-2019-14900

A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 and 5.5.0.Beta1. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SELECT or GROUP BY parts of the query. This flaw could allow an attacker to access unauthorized information or possibly conduct further attacks.

CVSS3: 6.5
1%
Низкий
больше 5 лет назад
debian логотип
CVE-2019-14900

A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 an ...

CVSS3: 6.5
1%
Низкий
больше 5 лет назад
github логотип
GHSA-8grg-q944-cch5

SQL Injection in Hibernate ORM

CVSS3: 6.5
1%
Низкий
почти 4 года назад

Уязвимостей на страницу