A vulnerability was found in Nayshlok Voyager. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file Voyager/src/models/DatabaseAccess.java. The manipulation leads to sql injection. The identifier of the patch is f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae. It is recommended to apply a patch to fix this issue. The identifier VDB-218005 was assigned to this vulnerability.
References
Link | Resource |
---|---|
https://github.com/Nayshlok/Voyager/commit/f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae | Patch |
https://vuldb.com/?ctiid.218005 | Permissions Required Third Party Advisory |
https://vuldb.com/?id.218005 | Third Party Advisory |
https://github.com/Nayshlok/Voyager/commit/f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae | Patch |
https://vuldb.com/?ctiid.218005 | Permissions Required Third Party Advisory |
https://vuldb.com/?id.218005 | Third Party Advisory |
Configurations
History
21 Nov 2024, 02:03
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 5.2
v3 : 5.5 |
References | () https://github.com/Nayshlok/Voyager/commit/f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae - Patch | |
References | () https://vuldb.com/?ctiid.218005 - Permissions Required, Third Party Advisory | |
References | () https://vuldb.com/?id.218005 - Third Party Advisory |
14 May 2024, 03:09
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
20 Dec 2023, 01:52
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-01-11 15:15
Updated : 2024-11-21 02:03
NVD link : CVE-2014-125074
Mitre link : CVE-2014-125074
CVE.ORG link : CVE-2014-125074
JSON object : View
Products Affected
voyager_project
- voyager
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')