CVE-2015-10070

A vulnerability was found in copperwall Twiddit. It has been rated as critical. This issue affects some unknown processing of the file index.php. The manipulation leads to sql injection. The identifier of the patch is 2203d4ce9810bdaccece5c48ff4888658a01acfc. It is recommended to apply a patch to fix this issue. The identifier VDB-218897 was assigned to this vulnerability.
References
Link Resource
https://github.com/copperwall/twiddit/commit/2203d4ce9810bdaccece5c48ff4888658a01acfc Patch Third Party Advisory
https://vuldb.com/?ctiid.218897 Permissions Required Third Party Advisory
https://vuldb.com/?id.218897 Permissions Required Third Party Advisory
https://github.com/copperwall/twiddit/commit/2203d4ce9810bdaccece5c48ff4888658a01acfc Patch Third Party Advisory
https://vuldb.com/?ctiid.218897 Permissions Required Third Party Advisory
https://vuldb.com/?id.218897 Permissions Required Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:twiddit_project:twiddit:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:24

Type Values Removed Values Added
References () https://github.com/copperwall/twiddit/commit/2203d4ce9810bdaccece5c48ff4888658a01acfc - Patch, Third Party Advisory () https://github.com/copperwall/twiddit/commit/2203d4ce9810bdaccece5c48ff4888658a01acfc - Patch, Third Party Advisory
References () https://vuldb.com/?ctiid.218897 - Permissions Required, Third Party Advisory () https://vuldb.com/?ctiid.218897 - Permissions Required, Third Party Advisory
References () https://vuldb.com/?id.218897 - Permissions Required, Third Party Advisory () https://vuldb.com/?id.218897 - Permissions Required, Third Party Advisory
CVSS v2 : 5.8
v3 : 9.8
v2 : 5.8
v3 : 6.3

11 Apr 2024, 00:53

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad en Copperwall Twiddit. Ha sido calificada como crítica. Este problema afecta un procesamiento desconocido del archivo index.php. La manipulación conduce a una inyección SQL. El identificador del parche es 2203d4ce9810bdaccece5c48ff4888658a01acfc. Se recomienda aplicar un parche para solucionar este problema. A esta vulnerabilidad se le asignó el identificador VDB-218897.

29 Feb 2024, 01:16

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-19 10:15

Updated : 2024-11-21 02:24


NVD link : CVE-2015-10070

Mitre link : CVE-2015-10070

CVE.ORG link : CVE-2015-10070


JSON object : View

Products Affected

twiddit_project

  • twiddit
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')