A vulnerability has been found in HPI-Information-Systems ProLOD and classified as critical. This vulnerability affects unknown code. The manipulation of the argument this leads to sql injection. The name of the patch is 3f710905458d49c77530bd3cbcd8960457566b73. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-217552.
References
Link | Resource |
---|---|
https://github.com/HPI-Information-Systems/ProLOD/commit/3f710905458d49c77530bd3cbcd8960457566b73 | Patch Third Party Advisory |
https://vuldb.com/?ctiid.217552 | Release Notes Third Party Advisory |
https://vuldb.com/?id.217552 | Third Party Advisory |
https://github.com/HPI-Information-Systems/ProLOD/commit/3f710905458d49c77530bd3cbcd8960457566b73 | Patch Third Party Advisory |
https://vuldb.com/?ctiid.217552 | Release Notes Third Party Advisory |
https://vuldb.com/?id.217552 | Third Party Advisory |
Configurations
History
21 Nov 2024, 02:24
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 5.2
v3 : 5.5 |
References | () https://github.com/HPI-Information-Systems/ProLOD/commit/3f710905458d49c77530bd3cbcd8960457566b73 - Patch, Third Party Advisory | |
References | () https://vuldb.com/?ctiid.217552 - Release Notes, Third Party Advisory | |
References | () https://vuldb.com/?id.217552 - Third Party Advisory |
29 Feb 2024, 01:16
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-01-06 11:15
Updated : 2024-11-21 02:24
NVD link : CVE-2015-10017
Mitre link : CVE-2015-10017
CVE.ORG link : CVE-2015-10017
JSON object : View
Products Affected
hpi
- prolod
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')