CVE-2014-125072

A vulnerability classified as critical has been found in CherishSin klattr. This affects an unknown part. The manipulation leads to sql injection. The patch is named f8e4ecfbb83aef577011b0b4aebe96fb6ec557f1. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217719.
Configurations

Configuration 1 (hide)

cpe:2.3:a:klattr_project:klattr:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:03

Type Values Removed Values Added
References () https://github.com/CherishSin/klattr/commit/f8e4ecfbb83aef577011b0b4aebe96fb6ec557f1 - Patch () https://github.com/CherishSin/klattr/commit/f8e4ecfbb83aef577011b0b4aebe96fb6ec557f1 - Patch
References () https://vuldb.com/?ctiid.217719 - Third Party Advisory () https://vuldb.com/?ctiid.217719 - Third Party Advisory
References () https://vuldb.com/?id.217719 - Third Party Advisory () https://vuldb.com/?id.217719 - Third Party Advisory
CVSS v2 : 5.2
v3 : 8.8
v2 : 5.2
v3 : 5.5

14 May 2024, 03:09

Type Values Removed Values Added
Summary
  • (es) Se ha encontrado una vulnerabilidad en CherishSin klattr y ha sido clasificada como crítica. Esto afecta a una parte desconocida. La manipulación conduce a la inyección de SQL. El parche se llama f8e4ecfbb83aef577011b0b4aebe96fb6ec557f1. Se recomienda aplicar un parche para solucionar este problema. El identificador asociado de esta vulnerabilidad es VDB-217719.

08 Dec 2023, 20:32

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 8.8

07 Nov 2023, 02:18

Type Values Removed Values Added
CWE CWE-89

20 Oct 2023, 07:15

Type Values Removed Values Added
Summary A vulnerability classified as critical has been found in CherishSin klattr. This affects an unknown part. The manipulation leads to sql injection. The name of the patch is f8e4ecfbb83aef577011b0b4aebe96fb6ec557f1. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217719. A vulnerability classified as critical has been found in CherishSin klattr. This affects an unknown part. The manipulation leads to sql injection. The patch is named f8e4ecfbb83aef577011b0b4aebe96fb6ec557f1. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217719.
CWE CWE-89

Information

Published : 2023-01-09 22:15

Updated : 2024-11-21 02:03


NVD link : CVE-2014-125072

Mitre link : CVE-2014-125072

CVE.ORG link : CVE-2014-125072


JSON object : View

Products Affected

klattr_project

  • klattr
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')