SQL Injection in GitHub repository owncast/owncast prior to 0.0.13.
References
Link | Resource |
---|---|
https://github.com/owncast/owncast/commit/23b6e5868d5501726c27a3fabbecf49000968591 | Patch Third Party Advisory |
https://huntr.dev/bounties/a04cff99-5d53-45e5-a882-771b0fad62c9 | Permissions Required Third Party Advisory |
Configurations
History
01 Dec 2022, 20:48
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://github.com/owncast/owncast/commit/23b6e5868d5501726c27a3fabbecf49000968591 - Patch, Third Party Advisory | |
References | (CONFIRM) https://huntr.dev/bounties/a04cff99-5d53-45e5-a882-771b0fad62c9 - Permissions Required, Third Party Advisory | |
CWE | CWE-89 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CPE | cpe:2.3:a:owncast_project:owncast:*:*:*:*:*:*:*:* |
29 Nov 2022, 21:22
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-11-29 21:15
Updated : 2024-02-04 23:14
NVD link : CVE-2022-3751
Mitre link : CVE-2022-3751
CVE.ORG link : CVE-2022-3751
JSON object : View
Products Affected
owncast_project
- owncast
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')