CVE-2014-125074

A vulnerability was found in Nayshlok Voyager. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file Voyager/src/models/DatabaseAccess.java. The manipulation leads to sql injection. The identifier of the patch is f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae. It is recommended to apply a patch to fix this issue. The identifier VDB-218005 was assigned to this vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:voyager_project:voyager:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:03

Type Values Removed Values Added
CVSS v2 : 5.2
v3 : 9.8
v2 : 5.2
v3 : 5.5
References () https://github.com/Nayshlok/Voyager/commit/f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae - Patch () https://github.com/Nayshlok/Voyager/commit/f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae - Patch
References () https://vuldb.com/?ctiid.218005 - Permissions Required, Third Party Advisory () https://vuldb.com/?ctiid.218005 - Permissions Required, Third Party Advisory
References () https://vuldb.com/?id.218005 - Third Party Advisory () https://vuldb.com/?id.218005 - Third Party Advisory

14 May 2024, 03:09

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad en Nayshlok Voyager. Ha sido declarada crítica. Una función desconocida del archivo Voyager/src/models/DatabaseAccess.java es afectada por esta vulnerabilidad. La manipulación conduce a la inyección de SQL. El identificador del parche es f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae. Se recomienda aplicar un parche para solucionar este problema. A esta vulnerabilidad se le asignó el identificador VDB-218005.

20 Dec 2023, 01:52

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-11 15:15

Updated : 2024-11-21 02:03


NVD link : CVE-2014-125074

Mitre link : CVE-2014-125074

CVE.ORG link : CVE-2014-125074


JSON object : View

Products Affected

voyager_project

  • voyager
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')