CVE-2015-10016

A vulnerability, which was classified as critical, has been found in jeff-kelley opensim-utils. Affected by this issue is the function DatabaseForRegion of the file regionscrits.php. The manipulation of the argument region leads to sql injection. The patch is identified as c29e5c729a833a29dbf5b1e505a0553fe154575e. It is recommended to apply a patch to fix this issue. VDB-217550 is the identifier assigned to this vulnerability.
References
Link Resource
https://github.com/jeff-kelley/opensim-utils/commit/c29e5c729a833a29dbf5b1e505a0553fe154575e Patch Third Party Advisory
https://vuldb.com/?ctiid.217550 Permissions Required Third Party Advisory
https://vuldb.com/?id.217550 Permissions Required Third Party Advisory
https://github.com/jeff-kelley/opensim-utils/commit/c29e5c729a833a29dbf5b1e505a0553fe154575e Patch Third Party Advisory
https://vuldb.com/?ctiid.217550 Permissions Required Third Party Advisory
https://vuldb.com/?id.217550 Permissions Required Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:opensim-utils_project:opensim-utils:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:24

Type Values Removed Values Added
CVSS v2 : 5.2
v3 : 9.8
v2 : 5.2
v3 : 5.5
Summary
  • (es) Se ha encontrado una vulnerabilidad en jeff-kelley opensim-utils y se ha clasificado como crítica. La función DatabaseForRegion del archivo regioncrits.php es afectada por esta vulnerabilidad. La manipulación de la región del argumento conduce a la inyección de SQL. El parche se identifica como c29e5c729a833a29dbf5b1e505a0553fe154575e. Se recomienda aplicar un parche para solucionar este problema. VDB-217550 es el identificador asignado a esta vulnerabilidad.
References () https://github.com/jeff-kelley/opensim-utils/commit/c29e5c729a833a29dbf5b1e505a0553fe154575e - Patch, Third Party Advisory () https://github.com/jeff-kelley/opensim-utils/commit/c29e5c729a833a29dbf5b1e505a0553fe154575e - Patch, Third Party Advisory
References () https://vuldb.com/?ctiid.217550 - Permissions Required, Third Party Advisory () https://vuldb.com/?ctiid.217550 - Permissions Required, Third Party Advisory
References () https://vuldb.com/?id.217550 - Permissions Required, Third Party Advisory () https://vuldb.com/?id.217550 - Permissions Required, Third Party Advisory

29 Feb 2024, 01:16

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-06 10:15

Updated : 2024-11-21 02:24


NVD link : CVE-2015-10016

Mitre link : CVE-2015-10016

CVE.ORG link : CVE-2015-10016


JSON object : View

Products Affected

opensim-utils_project

  • opensim-utils
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')